Various Lexmark devices have a Buffer Overflow (issue 1 of 2).
Conclusion & alert: CVE-2018-15519 is rated Moderate Risk (61.5/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 0.54%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-03-30 | 1.05% | 0.54% | -0.51% |
| 2 | 2025-03-29 | 0.54% | 1.05% | +0.51% |
| 3 | 2025-03-17 | — | 0.54% | — |
Full EPSS history (6 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.8 | 3.0 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| 7.5 | 2.0 | HIGH |
|
10.0 | 6.4 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| lexmark | cx310_firmware | <= lw70.gm2.p204 | cpe:2.3:o:lexmark:cx310_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx410_firmware | <= lw70.gm4.p204 | cpe:2.3:o:lexmark:cx410_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx510_firmware | <= lw70.gm7.p204 | cpe:2.3:o:lexmark:cx510_firmware:*:*:*:*:*:*:*:* |
| lexmark | xc2132_firmware | <= lw70.gm7.p204 | cpe:2.3:o:lexmark:xc2132_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx31x_firmware | <= lw70.sb2.p204 | cpe:2.3:o:lexmark:mx31x_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx41x_firmware | <= lw70.sb4.p204 | cpe:2.3:o:lexmark:mx41x_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx51x_firmware | <= lw70.sb4.p204 | cpe:2.3:o:lexmark:mx51x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm1145_firmware | <= lw70.sb4.p204 | cpe:2.3:o:lexmark:xm1145_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx61x_firmware | <= lw70.sb7.p204 | cpe:2.3:o:lexmark:mx61x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm3150_firmware | <= lw70.sb7.p204 | cpe:2.3:o:lexmark:xm3150_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx71x_firmware | <= lw70.tu.p204 | cpe:2.3:o:lexmark:mx71x_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx81x_firmware | <= lw70.tu.p204 | cpe:2.3:o:lexmark:mx81x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm51xx_firmware | <= lw70.tu.p204 | cpe:2.3:o:lexmark:xm51xx_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm71xx_firmware | <= lw70.tu.p204 | cpe:2.3:o:lexmark:xm71xx_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx91x_firmware | <= lw70.mg.p204 | cpe:2.3:o:lexmark:mx91x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm91x_firmware | <= lw70.mg.p204 | cpe:2.3:o:lexmark:xm91x_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx6500_firmware | <= lw70.jd.p204 | cpe:2.3:o:lexmark:mx6500_firmware:*:*:*:*:*:*:*:* |
| lexmark | x54x_firmware | <= lhs60.vk.p671 | cpe:2.3:o:lexmark:x54x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xs54x_firmware | <= lhs60.vk.p671 | cpe:2.3:o:lexmark:xs54x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x74x_firmware | <= lhs60.ny.p671 | cpe:2.3:o:lexmark:x74x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xs74x_firmware | <= lhs60.ny.p671 | cpe:2.3:o:lexmark:xs74x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x79x_firmware | <= lhs60.mr.p671 | cpe:2.3:o:lexmark:x79x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xs79x_firmware | <= lhs60.mr.p671 | cpe:2.3:o:lexmark:xs79x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x92x_firmware | <= lhs60.hk.p671 | cpe:2.3:o:lexmark:x92x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xs92x_firmware | <= lhs60.hk.p671 | cpe:2.3:o:lexmark:xs92x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x95x_firmware | <= lhs60.tq.p671 | cpe:2.3:o:lexmark:x95x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xs95x_firmware | <= lhs60.tq.p671 | cpe:2.3:o:lexmark:xs95x_firmware:*:*:*:*:*:*:*:* |
| lexmark | 6500_firmware | <= lhs60.jr.p671 | cpe:2.3:o:lexmark:6500_firmware:*:*:*:*:*:*:*:* |
| lexmark | x46x_firmware | <= lr.bs.p803 | cpe:2.3:o:lexmark:x46x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x65x_firmware | <= lr.mn.p803 | cpe:2.3:o:lexmark:x65x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x73x_firmware | <= lr.fl.p803 | cpe:2.3:o:lexmark:x73x_firmware:*:*:*:*:*:*:*:* |
| lexmark | x86x_firmware | <= lr.sp.p803 | cpe:2.3:o:lexmark:x86x_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| http://support.lexmark.com/index?page=content&id=TE892 | Vendor Advisory |