A relative path traversal vulnerability has been identified in the Embedded Solutions Framework in various Lexmark devices. This vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user.
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

Lexmark recommends a firmware update if your device has affected firmware.

History

Wed, 04 Feb 2026 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Lexmark
Lexmark cslbl
Lexmark cslbn
Lexmark csngv
Lexmark csnzj
Lexmark cstat
Lexmark cstgv
Lexmark cstls
Lexmark cstmh
Lexmark cstmm
Lexmark cstpc
Lexmark cstpp
Lexmark cstzj
Lexmark cxlbl
Lexmark cxlbn
Lexmark cxnzj
Lexmark cxtat
Lexmark cxtgv
Lexmark cxtls
Lexmark cxtmh
Lexmark cxtmm
Lexmark cxtpc
Lexmark cxtpp
Lexmark cxtzj
Lexmark mslbd
Lexmark mslsg
Lexmark msngm
Lexmark msngw
Lexmark msnsn
Lexmark mstgm
Lexmark mstgw
Lexmark mstsn
Lexmark mxlbd
Lexmark mxlsg
Lexmark mxngm
Lexmark mxtct
Lexmark mxtgm
Lexmark mxtgw
Lexmark mxtls
Lexmark mxtpm
Lexmark mxtsn
Vendors & Products Lexmark
Lexmark cslbl
Lexmark cslbn
Lexmark csngv
Lexmark csnzj
Lexmark cstat
Lexmark cstgv
Lexmark cstls
Lexmark cstmh
Lexmark cstmm
Lexmark cstpc
Lexmark cstpp
Lexmark cstzj
Lexmark cxlbl
Lexmark cxlbn
Lexmark cxnzj
Lexmark cxtat
Lexmark cxtgv
Lexmark cxtls
Lexmark cxtmh
Lexmark cxtmm
Lexmark cxtpc
Lexmark cxtpp
Lexmark cxtzj
Lexmark mslbd
Lexmark mslsg
Lexmark msngm
Lexmark msngw
Lexmark msnsn
Lexmark mstgm
Lexmark mstgw
Lexmark mstsn
Lexmark mxlbd
Lexmark mxlsg
Lexmark mxngm
Lexmark mxtct
Lexmark mxtgm
Lexmark mxtgw
Lexmark mxtls
Lexmark mxtpm
Lexmark mxtsn

Tue, 03 Feb 2026 21:00:00 +0000

Type Values Removed Values Added
Description A relative path traversal vulnerability has been identified in the Embedded Solutions Framework in various Lexmark devices. This vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user.
Title Relative path traversal vulnerability in Embedded Solutions Framework
Weaknesses CWE-22
References
Metrics cvssV4_0

{'score': 8.8, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:H/VA:L/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Lexmark

Published:

Updated: 2026-02-03T20:44:32.330Z

Reserved: 2025-11-17T13:56:38.587Z

Link: CVE-2025-65077

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-02-03T21:16:11.120

Modified: 2026-02-04T16:33:44.537

Link: CVE-2025-65077

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-02-04T12:05:28Z

Weaknesses