8.2
/ 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Description
Improper Restriction of XML External Entity Reference in various Lexmark printer drivers for Windows allows attacker to disclose sensitive information to an arbitrary URL.
Basic Information
ID
CVE-2025-4044
Source
Lexmark
Published
Aug 19, 2025 at 13:12
Modified
Aug 19, 2025 at 13:36
Affected Product
Vendor
Lexmark
Product
Universal Print Driver
Affected Versions
Lexmark Universal Print Driver 0
Lexmark Printer Software G2 0
Lexmark Printer Software G2 0