First published: Thu Nov 21 2019(Updated: )
In Lexmark Services Monitor 2.27.4.0.39 (running on TCP port 2070), a remote attacker can use a directory traversal technique using /../../../ or ..%2F..%2F..%2F to obtain local files on the host operating system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Lexmark Services Monitor Firmware | =2.27.4.0.39 | |
Lexmark Services Monitor |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for Lexmark Services Monitor is CVE-2019-16758.
The severity level of CVE-2019-16758 is high.
A remote attacker can exploit CVE-2019-16758 by using a directory traversal technique to obtain local files on the host operating system.
The Lexmark Services Monitor firmware version 2.27.4.0.39 is affected by CVE-2019-16758.
Yes, Lexmark Services Monitor version 2.27.4.0.39 is vulnerable to CVE-2019-16758.