CVE-2010-0101

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
04/05/2010
Last modified:
07/05/2010

Description

The embedded HTTP server in multiple Lexmark laser and inkjet printers and MarkNet devices, including X94x, W840, T656, N4000, E462, C935dn, 25xxN, and other models, allows remote attackers to cause a denial of service (operating system halt) via a malformed HTTP Authorization header.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:lexmark:25xxn:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c510:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c52x:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c53x:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c540:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c543:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c544:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c546:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c73x:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c77x:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c78x:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c920:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:c935dn:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:e120:*:*:*:*:*:*:*:*
cpe:2.3:h:lexmark:e238:*:*:*:*:*:*:*:*