PT-2025-6836 · Lexmark · Lexmark Printers

Published

2025-02-13

·

Updated

2025-05-22

·

CVE-2025-1127

CVSS v3.1

9.1

Critical

VectorAV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Lexmark printers (affected versions not specified)
Description The issue allows an attacker to execute arbitrary code as an unprivileged user and/or modify the contents of any data on the filesystem. It is reported to affect over 150 Lexmark printers, enabling remote code execution via path traversal and race conditions, with default credentials heightening the risk. This impacts enterprises and healthcare.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Path traversal

Race Condition

Weakness Enumeration

Related Identifiers

BDU:2025-11589
CVE-2025-1127

Affected Products

Lexmark Printers