CVE-2018-17944
On certain Lexmark devices that communicate with an LDAP or SMTP server, a malicious administrator can discover LDAP or SMTP credentials by changing that server's hostname to one that they control, and then capturing the credentials that are sent there.
Does this matter?
Lower severity and a low EPSS score (0.87%). Track it; it rarely justifies an emergency change on its own.
Description
On certain Lexmark devices that communicate with an LDAP or SMTP server, a malicious administrator can discover LDAP or SMTP credentials by changing that server's hostname to one that they control, and then capturing the credentials that are sent there. This occurs because stored credentials are not automatically deleted upon that type of hostname change.
- CVSS 3.0
- 4.9 MEDIUMCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 0.87% probability · 57th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- lexmark/cx725h firmware · lexmark/cx820 firmware · lexmark/cx825 firmware · lexmark/cx860 firmware · lexmark/xc4150 firmware · lexmark/xc6152 firmware · lexmark/xc8155 firmware · lexmark/xc8160 firmware
- Source
- cve@mitre.org
References
- http://support.lexmark.com/index?page=content&id=TE909Vendor Advisory
- http://support.lexmark.com/index?page=content&id=TE909Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.