CVE-2019-16758: Lexmark Services Monitor Firmware

High severity, CVSS 7.5. EPSS: 16.8% chance of exploitation in the next 30 days.

In Lexmark Services Monitor 2.27.4.0.39 (running on TCP port 2070), a remote attacker can use a directory traversal technique using /../../../ or ..%2F..%2F..%2F to obtain local files on the host operating system.

Affected products

  • Lexmark Services Monitor Firmware: version 2.27.4.0.39 only

Published 2019-11-21. Last modified 2026-06-17.