CVE-2022-29850
Severity CVSS v4.0:
Pending analysis
Type:
CWE-20
Input Validation
Publication date:
26/08/2022
Last modified:
08/08/2023
Description
Various Lexmark products through 2022-04-27 allow an attacker who has already compromised an affected Lexmark device to maintain persistence across reboots.
Impact
Base Score 3.x
8.10
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:lexmark:b2236_firmware:*:*:*:*:*:*:*:* | mslsg.081.014 (excluding) | |
| cpe:2.3:h:lexmark:b2236:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:mb2236_firmware:*:*:*:*:*:*:*:* | mxlsg.081.014 (excluding) | |
| cpe:2.3:h:lexmark:mb2236:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:ms331_firmware:*:*:*:*:*:*:*:* | mslbd.081.014 (excluding) | |
| cpe:2.3:h:lexmark:ms331:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:ms431_firmware:*:*:*:*:*:*:*:* | mslbd.081.014 (excluding) | |
| cpe:2.3:h:lexmark:ms431:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:m1342_firmware:*:*:*:*:*:*:*:* | mslbd.081.014 (excluding) | |
| cpe:2.3:h:lexmark:m1342:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:b3442_firmware:*:*:*:*:*:*:*:* | mslbd.081.014 (excluding) | |
| cpe:2.3:h:lexmark:b3442:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:b3340_firmware:*:*:*:*:*:*:*:* | mslbd.081.014 (excluding) | |
| cpe:2.3:h:lexmark:b3340:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:lexmark:xm1342_firmware:*:*:*:*:*:*:*:* | mslbd.081.014 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



