Various Lexmark products have Incorrect Access Control (issue 2 of 2).
Conclusion & alert: CVE-2019-9935 is rated Low Risk (35.5/100): CVSS Medium severity, with low exploitation likelihood (EPSS 0.20%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-03-17 | 0.08% | 0.20% | +0.12% |
| 2 | 2023-03-07 | 0.89% | 0.08% | -0.80% |
| 3 | 2022-04-01 | — | 0.89% | — |
Full EPSS history (6 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.3 | 3.0 | MEDIUM |
|
3.9 | 1.4 | [email protected] |
| 5.0 | 2.0 | MEDIUM |
|
10.0 | 2.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| lexmark | cs31x_firmware | <= lw71.vyl.p229 | cpe:2.3:o:lexmark:cs31x_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs41x_firmware | <= lw71.vy2.p229 | cpe:2.3:o:lexmark:cs41x_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx310_firmware | <= lw71.gm2.p229 | cpe:2.3:o:lexmark:cx310_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms310_firmware | <= lw71.prl.p229 | cpe:2.3:o:lexmark:ms310_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms312_firmware | <= lw71.prl.p229 | cpe:2.3:o:lexmark:ms312_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms317_firmware | <= lw71.prl.p229 | cpe:2.3:o:lexmark:ms317_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms410_firmware | <= lw71.prl.p229 | cpe:2.3:o:lexmark:ms410_firmware:*:*:*:*:*:*:*:* |
| lexmark | m1140_firmware | <= lw71.prl.p229 | cpe:2.3:o:lexmark:m1140_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms315_firmware | <= lw71.tl2.p229 | cpe:2.3:o:lexmark:ms315_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms415_firmware | <= lw71.tl2.p229 | cpe:2.3:o:lexmark:ms415_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms417_firmware | <= lw71.tl2.p229 | cpe:2.3:o:lexmark:ms417_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx31x_firmware | <= lw71.sb2.p229 | cpe:2.3:o:lexmark:mx31x_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm1135_firmware | <= lw71.sb2.p229 | cpe:2.3:o:lexmark:xm1135_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms51x_firmware | <= lw71.pr2.p229 | cpe:2.3:o:lexmark:ms51x_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms610dn_firmware | <= lw71.pr2.p229 | cpe:2.3:o:lexmark:ms610dn_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms617_firmware | <= lw71.pr2.p229 | cpe:2.3:o:lexmark:ms617_firmware:*:*:*:*:*:*:*:* |
| lexmark | m1145_firmware | <= lw71.pr2.p229 | cpe:2.3:o:lexmark:m1145_firmware:*:*:*:*:*:*:*:* |
| lexmark | m3150dn_firmware | <= lw71.pr2.p229 | cpe:2.3:o:lexmark:m3150dn_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms71x_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:ms71x_firmware:*:*:*:*:*:*:*:* |
| lexmark | m5163dn_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:m5163dn_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms810_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:ms810_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms811_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:ms811_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms812_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:ms812_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms817_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:ms817_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms818_firmware | <= lw71.dn2.p229 | cpe:2.3:o:lexmark:ms818_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| http://support.lexmark.com/index?page=content&id=TE924&locale=EN&userlocale=EN_US | Vendor Advisory |