CVE Feed

    Dashboard / CVE / CVE-2021-35449

    CVE-2021-35449

    The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard low priviliged user can use the driver to execute a DLL of their choosing during the add printer process, resulting in escalation of privileges to SYSTEM.

    Published:Jul 19, 2021
    Last Modified:Nov 21, 2024
    EPS:Jul 19, 2021
    EPSS Score:0.13287
    CVSS Score:7.8

    Affected Products

    Vendor
    Lexmark
    Product
    G2 Driver
    Vendor
    Lexmark
    Product
    G3 Driver
    Vendor
    Lexmark
    Product
    G4 Driver
    Vendor
    Lexmark
    Product
    Universal Print Driver

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High