CVE-2019-16758

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
21/11/2019
Last modified:
19/12/2019

Description

In Lexmark Services Monitor 2.27.4.0.39 (running on TCP port 2070), a remote attacker can use a directory traversal technique using /../../../ or ..%2F..%2F..%2F to obtain local files on the host operating system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:lexmark:services_monitor_firmware:2.27.4.0.39:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:services_monitor:-:*:*:*:*:*:*:*