CWE
79
Advisory Published
Updated

CVE-2019-19773: XSS

First published: Fri Mar 06 2020(Updated: )

Various Lexmark products have stored XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.

Credit: cve@mitre.org

Affected SoftwareAffected VersionHow to fix
Lexmark Cs31x Firmware<=lw74.vyl.p267
Lexmark CS31x
Lexmark Cs41x Firmware<=lw74.vy2.p267
Lexmark Cs41x
Lexmark Cs51x Firmware<=lw74.vy4.p267
Lexmark Cs51x
Lexmark Cx310 Firmware<=lw74.gm2.p267
Lexmark Cx310
Lexmark Cx410 Firmware<=lw74.gm4.p267
Lexmark CX Series
Lexmark Xc2130 Firmware<=lw74.gm4.p267
Lexmark Xc2130
Lexmark Cx510 Firmware<=lw74.gm7.p267
Lexmark CX Series
Lexmark Xc2132 Firmware<=lw74.gm7.p267
Lexmark Xc2132
Lexmark Ms310 Firmware<=lw74.prl.p267
Lexmark Ms310
Lexmark Ms312 Firmware<=lw74.prl.p267
Lexmark Ms312
Lexmark Ms317 Firmware<=lw74.prl.p267
Lexmark Ms317
Lexmark Ms410 Firmware<=lw74.prl.p267
Lexmark Ms410
Lexmark M1140 Firmware<=lw74.prl.p267
Lexmark M1140
Lexmark Ms315 Firmware<=lw74.tl2.p267
Lexmark Ms315
Lexmark Ms415 Firmware<=lw74.tl2.p267
Lexmark Ms415
Lexmark Ms417 Firmware<=lw74.tl2.p267
Lexmark Ms417
Lexmark Ms51x Firmware<=lw74.pr2.p267
Lexmark Ms51x
Lexmark Ms610dn Firmware<=lw74.pr2.p267
Lexmark Ms610dn
Lexmark Ms617 Firmware<=lw74.pr2.p267
Lexmark Ms617
Lexmark M1145 Firmware<=lw74.pr2.p267
Lexmark M1145
Lexmark M3150dn Firmware<=lw74.pr2.p267
Lexmark M3150dn
Lexmark Ms610de Firmware<=lw74.pr4.p267
Lexmark Ms610de
Lexmark M3150 Firmware<=lw74.pr4.p267
Lexmark M3150
Lexmark Ms71x Firmware<=lw74.dn2.p267
Lexmark Ms71x
Lexmark M5163dn Firmware<=lw74.dn2.p267
Lexmark M5163dn
Lexmark Ms810 Firmware<=lw74.dn2.p267
Lexmark Ms810
Lexmark Ms811 Firmware<=lw74.dn2.p267
Lexmark Ms811
Lexmark Ms812 Firmware<=lw74.dn2.p267
Lexmark Ms812
Lexmark Ms817 Firmware<=lw74.dn2.p267
Lexmark Ms817
Lexmark Ms818 Firmware<=lw74.dn2.p267
Lexmark Ms818
Lexmark Ms810de Firmware<=lw74.dn4.p267
Lexmark Ms810de
Lexmark M5155 Firmware<=lw74.dn4.p267
Lexmark M5155
Lexmark M5163 Firmware<=lw74.dn4.p267
Lexmark M5163
Lexmark Ms812de Firmware<=lw74.dn7.p267
Lexmark Ms812de
Lexmark M5170 Firmware<=lw74.dn7.p267
Lexmark M5170
Lexmark Ms91x Firmware<=lw74.sa.p267
Lexmark Ms91x
Lexmark Mx31x Firmware<=lw74.sb2.p267
Lexmark Mx31x
Lexmark Xm1135 Firmware<=lw74.sb2.p267
Lexmark Xm1135
Lexmark Mx410 Firmware<=lw74.sb4.p267
Lexmark Mx410
Lexmark Mx510 Firmware<=lw74.sb4.p267
Lexmark Mx510
Lexmark Mx511 Firmware<=lw74.sb4.p267
Lexmark Mx511
Lexmark Xm1140 Firmware<=lw74.sb4.p267
Lexmark Xm1140
Lexmark Xm1145 Firmware<=lw74.sb4.p267
Lexmark Xm1145
Lexmark Mx610 Firmware<=lw74.sb7.p267
Lexmark Mx610
Lexmark Mx611 Firmware<=lw74.sb7.p267
Lexmark Mx611
Lexmark Xm3150 Firmware<=lw74.sb7.p267
Lexmark Xm3150
Lexmark Mx71x Firmware<=lw74.tu.p267
Lexmark Mx71x
Lexmark Mx81x Firmware<=lw74.tu.p267
Lexmark Mx81x
Lexmark Xm51xx Firmware<=lw74.tu.p267
Lexmark Xm51xx
Lexmark Xm71xx Firmware<=lw74.tu.p267
Lexmark Xm71xx
Lexmark Mx91x Firmware<=lw74.mg.p267
Lexmark Mx91x
Lexmark Xm91x Firmware<=lw74.mg.p267
Lexmark Xm91x
Lexmark Mx6500e Firmware<=lw74.jd.p267
Lexmark Mx6500e
Lexmark C746 Firmware<=lhs60.cm2.p731
Lexmark C746
Lexmark C748 Firmware<=lhs60.cm4.p735
Lexmark C748
Lexmark Cs748 Firmware<=lhs60.cm4.p735
Lexmark Cs748
Lexmark C792 Firmware<=lhs60.hc.p735
Lexmark C792
Lexmark Cs796 Firmware<=lhs60.hc.p735
Lexmark Cs796
Lexmark C925 Firmware<=lhs60.hv.p735
Lexmark C925
Lexmark C950 Firmware<=lhs60.tp.p735
Lexmark C950
Lexmark X548 Firmware<=lhs60.vk.p735
Lexmark X548
Lexmark Xs548 Firmware<=lhs60.vk.p735
Lexmark Xs548
Lexmark X74x Firmware<=lhs60.ny.p735
Lexmark X74x
Lexmark Xs748 Firmware<=lhs60.ny.p735
Lexmark Xs748
Lexmark X792 Firmware<=lhs60.mr.p735
Lexmark X792
Lexmark Xs79x Firmware<=lhs60.mr.p735
Lexmark Xs79x
Lexmark X925 Firmware<=lhs60.hk.p735
Lexmark X925
Lexmark Xs925 Firmware<=lhs60.hk.p735
Lexmark Xs925
Lexmark X95x Firmware<=lhs60.tq.p735
Lexmark X95x
Lexmark Xs95x Firmware<=lhs60.tq.p735
Lexmark Xs95x
Lexmark 6500e Firmware<=lhs60.jr.p735
Lexmark 6500e
Lexmark C734 Firmware<=lr.sk.p822
Lexmark C734
Lexmark C736 Firmware<=lr.ske.p822
Lexmark C736
Lexmark E46x Firmware<=lr.lbh.p822
Lexmark E46x
Lexmark T65x Firmware<=lr.jp.p822
Lexmark T65x
Lexmark X46x Firmware<=lr.bs.p822
Lexmark X46x
Lexmark X65x Firmware<=lr.mn.p822
Lexmark X65x
Lexmark X73x Firmware<=lr.fl.p822
Lexmark X73x
Lexmark W850 Firmware<=lp.jb.p821
Lexmark W850
Lexmark X86x Firmware<=lp.sp.p821
Lexmark X86x

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2019-19773?

    The severity of CVE-2019-19773 is considered high due to its potential for stored cross-site scripting (XSS) attacks on vulnerable Lexmark devices.

  • How do I fix CVE-2019-19773?

    To fix CVE-2019-19773, update your Lexmark device firmware to the latest version provided in the vendor's support documentation.

  • Which Lexmark products are affected by CVE-2019-19773?

    CVE-2019-19773 affects various Lexmark products, primarily older generation models including CS31x, CS41x, and CS51x series, among others.

  • What kind of attack can be executed due to CVE-2019-19773?

    CVE-2019-19773 allows attackers to perform stored XSS attacks, which can lead to unauthorized access or manipulation of user sessions.

  • How can I check if my Lexmark device is vulnerable to CVE-2019-19773?

    Check the firmware version of your Lexmark device against the listed versions mentioned in the vulnerability documentation to determine if it is affected.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203