CVE-2021-35449
19.07.2021, 15:15
The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard low priviliged user can use the driver to execute a DLL of their choosing during the add printer process, resulting in escalation of privileges to SYSTEM.Enginsight
Vendor | Product | Version |
---|---|---|
lexmark | g2_driver | 𝑥 ≤ 2.7.1.0 |
lexmark | g3_driver | 𝑥 ≤ 3.2.0.0 |
lexmark | g4_driver | 𝑥 ≤ 4.2.1.0 |
lexmark | universal_print_driver | 𝑥 ≤ 2.15.1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References