Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07.
Conclusion & alert: CVE-2021-44735 is rated High Risk (74.2/100): CVSS Critical severity, with high exploitation likelihood (EPSS 13.23%, 94th percentile). Core evidence: EPSS ranks this CVE among the most likely to be exploited in the near term. EPSS rose +2.03% over the last day, indicating growing attacker interest. Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-04-04 | 11.20% | 13.23% | +2.03% |
| 2 | 2026-01-31 | 12.55% | 11.20% | -1.35% |
| 3 | 2025-11-21 | — | 12.55% | — |
Full EPSS history (26 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.8 | 3.1 | CRITICAL |
|
3.9 | 5.9 | [email protected] |
| 10.0 | 2.0 | HIGH |
|
10.0 | 10.0 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| lexmark | b2236_firmware | < mslsg.076.294 | cpe:2.3:o:lexmark:b2236_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb2236_firmware | < mxlsg.076.294 | cpe:2.3:o:lexmark:mb2236_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms431_firmware | < mslbd.076.294 | cpe:2.3:o:lexmark:ms431_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms331_firmware | < mslbd.076.294 | cpe:2.3:o:lexmark:ms331_firmware:*:*:*:*:*:*:*:* |
| lexmark | m1342_firmware | < mslbd.076.294 | cpe:2.3:o:lexmark:m1342_firmware:*:*:*:*:*:*:*:* |
| lexmark | b3442_firmware | < mslbd.076.294 | cpe:2.3:o:lexmark:b3442_firmware:*:*:*:*:*:*:*:* |
| lexmark | b3340_firmware | < mslbd.076.294 | cpe:2.3:o:lexmark:b3340_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm1342_firmware | < mslbd.076.294 | cpe:2.3:o:lexmark:xm1342_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx331_firmware | < mxlbd.076.294 | cpe:2.3:o:lexmark:mx331_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx431_firmware | < mxlbd.076.294 | cpe:2.3:o:lexmark:mx431_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb3442_firmware | < mxlbd.076.294 | cpe:2.3:o:lexmark:mb3442_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms321_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:ms321_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms421_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:ms421_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms521_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:ms521_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms621_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:ms621_firmware:*:*:*:*:*:*:*:* |
| lexmark | m1242_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:m1242_firmware:*:*:*:*:*:*:*:* |
| lexmark | m1246_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:m1246_firmware:*:*:*:*:*:*:*:* |
| lexmark | b2338_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:b2338_firmware:*:*:*:*:*:*:*:* |
| lexmark | b2442_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:b2442_firmware:*:*:*:*:*:*:*:* |
| lexmark | b2546_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:b2546_firmware:*:*:*:*:*:*:*:* |
| lexmark | b2650_firmware | < msngm.076.294 | cpe:2.3:o:lexmark:b2650_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms622_firmware | < mstgm.076.294 | cpe:2.3:o:lexmark:ms622_firmware:*:*:*:*:*:*:*:* |
| lexmark | m3250_firmware | < mstgm.076.294 | cpe:2.3:o:lexmark:m3250_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx321_firmware | < mxngm.076.294 | cpe:2.3:o:lexmark:mx321_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb2338_firmware | < mxngm.076.294 | cpe:2.3:o:lexmark:mb2338_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx421_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mx421_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx521_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mx521_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx522_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mx522_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx622_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mx622_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm1242_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:xm1242_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm1246_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:xm1246_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm3250_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:xm3250_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb2442_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mb2442_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb2546_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mb2546_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb2650_firmware | < mxtgm.076.294 | cpe:2.3:o:lexmark:mb2650_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms821_firmware | < msngw.076.294 | cpe:2.3:o:lexmark:ms821_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms823_firmware | < msngw.076.294 | cpe:2.3:o:lexmark:ms823_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms825_firmware | < msngw.076.294 | cpe:2.3:o:lexmark:ms825_firmware:*:*:*:*:*:*:*:* |
| lexmark | b2865_firmware | < msngw.076.294 | cpe:2.3:o:lexmark:b2865_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms725_firmware | < msngw.076.294 | cpe:2.3:o:lexmark:ms725_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms822_firmware | < mstgw.076.294 | cpe:2.3:o:lexmark:ms822_firmware:*:*:*:*:*:*:*:* |
| lexmark | ms826_firmware | < mstgw.076.294 | cpe:2.3:o:lexmark:ms826_firmware:*:*:*:*:*:*:*:* |
| lexmark | m5255_firmware | < mstgw.076.294 | cpe:2.3:o:lexmark:m5255_firmware:*:*:*:*:*:*:*:* |
| lexmark | m5270_firmware | < mstgw.076.294 | cpe:2.3:o:lexmark:m5270_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx722_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:mx722_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx822_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:mx822_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx826_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:mx826_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm5365_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:xm5365_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm7355_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:xm7355_firmware:*:*:*:*:*:*:*:* |
| lexmark | xm7370_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:xm7370_firmware:*:*:*:*:*:*:*:* |
| lexmark | mb2770_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:mb2770_firmware:*:*:*:*:*:*:*:* |
| lexmark | mx721_firmware | < mxtgw.076.294 | cpe:2.3:o:lexmark:mx721_firmware:*:*:*:*:*:*:*:* |
| lexmark | c3426_firmware | < cslbn.076.294 | cpe:2.3:o:lexmark:c3426_firmware:*:*:*:*:*:*:*:* |
| lexmark | c2326_firmware | < cslbn.076.294 | cpe:2.3:o:lexmark:c2326_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs431_firmware | < cslbn.076.294 | cpe:2.3:o:lexmark:cs431_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs439_firmware | < cslbn.076.294 | cpe:2.3:o:lexmark:cs439_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs331_firmware | < cslbl.076.294 | cpe:2.3:o:lexmark:cs331_firmware:*:*:*:*:*:*:*:* |
| lexmark | c3224_firmware | < cslbl.076.294 | cpe:2.3:o:lexmark:c3224_firmware:*:*:*:*:*:*:*:* |
| lexmark | c3326_firmware | < cslbl.076.294 | cpe:2.3:o:lexmark:c3326_firmware:*:*:*:*:*:*:*:* |
| lexmark | mc3426_firmware | < cxlbn.076.294 | cpe:2.3:o:lexmark:mc3426_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx431_firmware | < cxlbn.076.294 | cpe:2.3:o:lexmark:cx431_firmware:*:*:*:*:*:*:*:* |
| lexmark | xc2326_firmware | < cxlbn.076.294 | cpe:2.3:o:lexmark:xc2326_firmware:*:*:*:*:*:*:*:* |
| lexmark | mc3224_firmware | < cxlbl.076.294 | cpe:2.3:o:lexmark:mc3224_firmware:*:*:*:*:*:*:*:* |
| lexmark | mc3326_firmware | < cxlbl.076.294 | cpe:2.3:o:lexmark:mc3326_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx331_firmware | < cxlbl.076.294 | cpe:2.3:o:lexmark:cx331_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs622_firmware | < cstzj.076.294 | cpe:2.3:o:lexmark:cs622_firmware:*:*:*:*:*:*:*:* |
| lexmark | c2240_firmware | < cstzj.076.294 | cpe:2.3:o:lexmark:c2240_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs421_firmware | < csnzj.076.294 | cpe:2.3:o:lexmark:cs421_firmware:*:*:*:*:*:*:*:* |
| lexmark | cs521_firmware | < csnzj.076.294 | cpe:2.3:o:lexmark:cs521_firmware:*:*:*:*:*:*:*:* |
| lexmark | c2325_firmware | < csnzj.076.294 | cpe:2.3:o:lexmark:c2325_firmware:*:*:*:*:*:*:*:* |
| lexmark | c2425_firmware | < csnzj.076.294 | cpe:2.3:o:lexmark:c2425_firmware:*:*:*:*:*:*:*:* |
| lexmark | c2535_firmware | < csnzj.076.294 | cpe:2.3:o:lexmark:c2535_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx522_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:cx522_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx622_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:cx622_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx625_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:cx625_firmware:*:*:*:*:*:*:*:* |
| lexmark | xc2235_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:xc2235_firmware:*:*:*:*:*:*:*:* |
| lexmark | xc4240_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:xc4240_firmware:*:*:*:*:*:*:*:* |
| lexmark | mc2535_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:mc2535_firmware:*:*:*:*:*:*:*:* |
| lexmark | mc2640_firmware | < cxtzj.076.294 | cpe:2.3:o:lexmark:mc2640_firmware:*:*:*:*:*:*:*:* |
| lexmark | cx421_firmware | < cxnzj.076.294 | cpe:2.3:o:lexmark:cx421_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://support.lexmark.com/alerts/ | Vendor Advisory |
| https://www.zerodayinitiative.com/advisories/ZDI-22-326/ | Third Party Advisory VDB Entry |
| https://www.zerodayinitiative.com/advisories/ZDI-22-329/ | Third Party Advisory VDB Entry |
| https://www.zerodayinitiative.com/advisories/ZDI-22-330/ | Third Party Advisory VDB Entry |