890
VMScore

CVE-2021-44735

Published: 20/01/2022 Updated: 17/03/2022
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

This vulnerability allows local malicious users to escalate privileges on affected installations of Lexmark MC3224i printers. An attacker must first obtain the ability to execute low-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the permissions set on root-owned service files. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of root.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lexmark b2236 firmware

lexmark mb2236 firmware

lexmark ms431 firmware

lexmark ms331 firmware

lexmark m1342 firmware

lexmark b3442 firmware

lexmark b3340 firmware

lexmark xm1342 firmware

lexmark mx331 firmware

lexmark mx431 firmware

lexmark mb3442 firmware

lexmark ms321 firmware

lexmark ms421 firmware

lexmark ms521 firmware

lexmark ms621 firmware

lexmark m1242 firmware

lexmark m1246 firmware

lexmark b2338 firmware

lexmark b2442 firmware

lexmark b2546 firmware

lexmark b2650 firmware

lexmark ms622 firmware

lexmark m3250 firmware

lexmark mx321 firmware

lexmark mb2338 firmware

lexmark mx421 firmware

lexmark mx521 firmware

lexmark mx522 firmware

lexmark mx622 firmware

lexmark xm1242 firmware

lexmark xm1246 firmware

lexmark xm3250 firmware

lexmark mb2442 firmware

lexmark mb2546 firmware

lexmark mb2650 firmware

lexmark ms821 firmware

lexmark ms823 firmware

lexmark ms825 firmware

lexmark b2865 firmware

lexmark ms725 firmware

lexmark ms822 firmware

lexmark ms826 firmware

lexmark m5255 firmware

lexmark m5270 firmware

lexmark mx722 firmware

lexmark mx822 firmware

lexmark mx826 firmware

lexmark xm5365 firmware

lexmark xm7355 firmware

lexmark xm7370 firmware

lexmark mb2770 firmware

lexmark mx721 firmware

lexmark c3426 firmware

lexmark c2326 firmware

lexmark cs431 firmware

lexmark cs439 firmware

lexmark cs331 firmware

lexmark c3224 firmware

lexmark c3326 firmware

lexmark mc3426 firmware

lexmark cx431 firmware

lexmark xc2326 firmware

lexmark mc3224 firmware

lexmark mc3326 firmware

lexmark cx331 firmware

lexmark cs622 firmware

lexmark c2240 firmware

lexmark cs421 firmware

lexmark cs521 firmware

lexmark c2325 firmware

lexmark c2425 firmware

lexmark c2535 firmware

lexmark cx522 firmware

lexmark cx622 firmware

lexmark cx625 firmware

lexmark xc2235 firmware

lexmark xc4240 firmware

lexmark mc2535 firmware

lexmark mc2640 firmware

lexmark cx421 firmware

lexmark mc2325 firmware

lexmark mc2425 firmware

lexmark cx820 firmware

lexmark cx825 firmware

lexmark cs827 firmware

lexmark cx860 firmware

lexmark xc6152 firmware

lexmark xc6153 firmware

lexmark xc8155 firmware

lexmark xc8160 firmware

lexmark xc8163 firmware

lexmark cs820 firmware

lexmark c6160 firmware

lexmark cs720 firmware

lexmark cs725 firmware

lexmark cs727 firmware

lexmark cs728 firmware

lexmark c4150 firmware

lexmark cx725 firmware

lexmark cx727 firmware

lexmark xc4140 firmware

lexmark xc4143 firmware

lexmark xc4150 firmware

lexmark xc4153 firmware

lexmark cs921 firmware

lexmark cs923 firmware

lexmark cs927 firmware

lexmark c9235 firmware

lexmark cx920 firmware

lexmark cx921 firmware

lexmark cx922 firmware

lexmark cx923 firmware

lexmark cx924 firmware

lexmark xc9225 firmware

lexmark xc9235 firmware

lexmark xc9245 firmware

lexmark xc9255 firmware

lexmark xc9265 firmware

Github Repositories

Exploit for CVE-2021-44735

CVE-2021-44735 PoC Embedded web server command injection vulnerability in Lexmark devices Exploit based on the following research wwwcrowdstrikecom/blog/how-to-compromise-a-printer-in-3-simple-steps/ Using To run the exploit pass 3 arguments: rhost - printer IP-address lhost - IP-address of the interface for reverse-shell connection lport - port number for reverse-