CVE-2019-19772: Lexmark 6500e Firmware

Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.

Various Lexmark products have reflected XSS in the embedded web server used in older generation Lexmark devices. Affected products are available in http://support.lexmark.com/index?page=content&id=TE935&locale=en&userlocale=EN_US.

Affected products

  • Lexmark 6500e Firmware: up to and including lhs60.jr.p735
  • Lexmark c734 Firmware: up to and including lr.sk.p822
  • Lexmark c736 Firmware: up to and including lr.ske.p822
  • Lexmark c746 Firmware: up to and including lhs60.cm2.p731
  • Lexmark c748 Firmware: up to and including lhs60.cm4.p735
  • Lexmark c792 Firmware: up to and including lhs60.hc.p735
  • Lexmark c925 Firmware: up to and including lhs60.hv.p735
  • Lexmark c950 Firmware: up to and including lhs60.tp.p735
  • Lexmark CS31X Firmware: up to and including lw74.vyl.p267
  • Lexmark CS41X Firmware: up to and including lw74.vy2.p267
  • Lexmark CS51X Firmware: up to and including lw74.vy4.p267
  • Lexmark CS748 Firmware: up to and including lhs60.cm4.p735
  • Lexmark CS796 Firmware: up to and including lhs60.hc.p735
  • Lexmark CX310 Firmware: up to and including lw74.gm2.p267
  • Lexmark CX410 Firmware: up to and including lw74.gm4.p267
  • Lexmark CX510 Firmware: up to and including lw74.gm7.p267
  • Lexmark e46x Firmware: up to and including lr.lbh.p822
  • Lexmark m1140 Firmware: up to and including lw74.prl.p267
  • Lexmark m1145 Firmware: up to and including lw74.pr2.p267
  • Lexmark m3150 Firmware: up to and including lw74.pr4.p267
  • Lexmark m3150dn Firmware: up to and including lw74.pr2.p267
  • Lexmark m5155 Firmware: up to and including lw74.dn4.p267
  • Lexmark m5163 Firmware: up to and including lw74.dn4.p267
  • Lexmark m5163dn Firmware: up to and including lw74.dn2.p267
  • Lexmark m5170 Firmware: up to and including lw74.dn7.p267
  • and 55 more

Published 2020-03-06. Last modified 2026-06-17.