{"id":752,"date":"2014-02-03T14:52:52","date_gmt":"2014-02-03T14:52:52","guid":{"rendered":"http:\/\/h.foofus.net\/?p=752"},"modified":"2014-02-03T14:52:52","modified_gmt":"2014-02-03T14:52:52","slug":"lexmark-laser-printers-contain-multiple-vulnerabilities","status":"publish","type":"post","link":"http:\/\/h.foofus.net\/?p=752","title":{"rendered":"Lexmark laser printers contain multiple vulnerabilities"},"content":{"rendered":"<p>Overview<br \/>\n&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br \/>\nCertain Lexmark devices are vulnerable to unverified password changes and stored cross-site scripting attacks.<\/p>\n<p>Description:<br \/>\n&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br \/>\nUnverified Password Change &#8211; CVE-2013-6032<br \/>\nCertain models of Lexmark laser printers and MarkNet devices are vulnerable to an attack which allows a remote unauthenticated attacker to change the administrative password of the printer&#8217;s web administration interface. The interface does not perform sufficient validation of the vac.255.GENPASSWORD parameter in POST requests to the \/cgi-bin\/postpf\/cgi-bin\/dynamic\/config\/config.html page, allowing an unauthenticated remote attacker to reset the administrative password to an empty string.<\/p>\n<p>Improper Neutralization of Input During Web Page Generation (&#8216;Cross-site Scripting&#8217;) &#8211; CVE-2013-6033<br \/>\nCertain models of Lexmark laser printers are vulnerable to stored cross-site scripting attacks. The printers&#8217; administrative web interface does not perform sufficient validation of user input to the &#8220;Location&#8221; and &#8220;Contact Name&#8221; fields in the &#8220;General Settings&#8221; configuration page.<\/p>\n<p>Impact:<br \/>\n&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br \/>\nAn attacker may be able to run arbitrary script in the context of a victim&#8217;s browser. The attacker may also be able to gain full administrative control of the printer.<\/p>\n<p>Solution:<br \/>\n&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br \/>\nApply an Update<\/p>\n<p>Lexmark advises users to update to the latest firmware version. A list of affected models and firmware versions, as well as accompanying fixes, can be found at Lexmark&#8217;s advisory page.<br \/>\nVendor Information: http:\/\/support.lexmark.com\/alerts\/<\/p>\n<p>CVSS Metrics:<br \/>\n&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;-<br \/>\nGroup Score Vector<br \/>\nBase 9.0 AV:N\/AC:L\/Au:N\/C:P\/I:P\/A:C<br \/>\nTemporal 7.4 E:F\/RL:OF\/RC:C<br \/>\nEnvironmental 1.9 CDP:N\/TD:L\/CR:ND\/IR:ND\/AR:ND<\/p>\n<p>Vendor Date Notified: 16 Oct 2013<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Overview &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;- Certain Lexmark devices are vulnerable to unverified password changes and stored cross-site scripting attacks. Description: &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;- Unverified Password Change &#8211; CVE-2013-6032 Certain models of Lexmark laser printers and MarkNet devices are vulnerable to an attack which allows a remote unauthenticated attacker to change the administrative password of the printer&#8217;s web administration interface. The [&hellip;]<\/p>\n","protected":false},"author":13,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2,1],"tags":[],"class_list":["post-752","post","type-post","status-publish","format-standard","hentry","category-advisories","category-uncategorized"],"_links":{"self":[{"href":"http:\/\/h.foofus.net\/index.php?rest_route=\/wp\/v2\/posts\/752","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/h.foofus.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/h.foofus.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/h.foofus.net\/index.php?rest_route=\/wp\/v2\/users\/13"}],"replies":[{"embeddable":true,"href":"http:\/\/h.foofus.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=752"}],"version-history":[{"count":3,"href":"http:\/\/h.foofus.net\/index.php?rest_route=\/wp\/v2\/posts\/752\/revisions"}],"predecessor-version":[{"id":756,"href":"http:\/\/h.foofus.net\/index.php?rest_route=\/wp\/v2\/posts\/752\/revisions\/756"}],"wp:attachment":[{"href":"http:\/\/h.foofus.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=752"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/h.foofus.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=752"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/h.foofus.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=752"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}