Xc2130 firmware
This hub aggregates every CVE we track for Xc2130 firmware, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
9
CVEs tracked
2
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM5HIGH2CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 9 most recently published vulnerabilities affecting Xc2130 firmware.
- CVE-2023-40239Certain Lexmark devices (such as CS310) before 2023-08-25 allow XXE attacks, leading to information disclosure. The fixed firmware version is LW80.*.P246, i.e., '*' indicates that the full version ...7.5
- CVE-2021-44734Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to remote code execution on the device.9.8
- CVE-2021-44737PJL directory traversal vulnerability in Lexmark devices through 2021-12-07 that can be leveraged to overwrite internal configuration files.8.8
- CVE-2021-44738Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter.9.8
- CVE-2020-10093A cross-site scripting (XSS) vulnerability in Lexmark Pro910 series inkjet and other discontinued products.5.4
- CVE-2020-10094A cross-site scripting (XSS) vulnerability in Lexmark CS31x before LW74.VYL.P273; CS41x before LW74.VY2.P273; CS51x before LW74.VY4.P273; CX310 before LW74.GM2.P273; CX410 & XC2130 before LW74.GM4....5.4
- CVE-2019-19772Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=...5.4
- CVE-2019-19773Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE9...5.4
- CVE-2019-18791Lexmark printer MS812 and multiple older generation Lexmark devices have a stored XSS vulnerability in the embedded web server. The vulnerability can be exploited to expose session credentials and ...5.4
Product normalization is registry-driven with AI assist and human review. How it works