Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
CVE-2016-1896 Details
Description
Race condition in the initialization process on Lexmark printers with firmware ATL before ATL.02.049, CB before CB.02.049, PP before PP.02.049, and YK before YK.02.049 allows remote attackers to bypass authentication by leveraging incorrect detection of the security-jumper status.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| http://support.lexmark.com/index?page=content&id=TE745 | CVE | Vendor Advisory |
| http://support.lexmark.com/index?page=content&id=TE745 | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-254 | 7PK - Security Features | [email protected] |
| CWE-264 | Permissions, Privileges, and Access Controls | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| lexmark printer firmware | <= cb.02.048 <= atl.02.048 <= yk.02.048 <= pp.02.048 |
CPE
Remediation
| |
| lexmark c4150 | All versions |
CPE
Remediation
| |
| lexmark cs720de | All versions |
CPE
Remediation
| |
| lexmark cs720dte | All versions |
CPE
Remediation
| |
| lexmark cs725de | All versions |
CPE
Remediation
| |
| lexmark cs725dte | All versions |
CPE
Remediation
| |
| lexmark cx725de | All versions |
CPE
Remediation
| |
| lexmark cx725dhe | All versions |
CPE
Remediation
| |
| lexmark cx725dthe | All versions |
CPE
Remediation
| |
| lexmark xc4150 | All versions |
CPE
Remediation
| |
| lexmark c6160 | All versions |
CPE
Remediation
| |
| lexmark cs820de | All versions |
CPE
Remediation
| |
| lexmark cs820dte | All versions |
CPE
Remediation
| |
| lexmark cs820dtfe | All versions |
CPE
Remediation
| |
| lexmark cx820de | All versions |
CPE
Remediation
| |
| lexmark cx820dtfe | All versions |
CPE
Remediation
| |
| lexmark cx825de | All versions |
CPE
Remediation
| |
| lexmark cx825dte | All versions |
CPE
Remediation
| |
| lexmark cx825dtfe | All versions |
CPE
Remediation
| |
| lexmark cx860de | All versions |
CPE
Remediation
| |
| lexmark cx860dte | All versions |
CPE
Remediation
| |
| lexmark cx860dtfe | All versions |
CPE
Remediation
| |
| lexmark xc6152de | All versions |
CPE
Remediation
| |
| lexmark xc6152dtfe | All versions |
CPE
Remediation
| |
| lexmark xc8155de | All versions |
CPE
Remediation
| |
| lexmark xc8155dte | All versions |
CPE
Remediation
| |
| lexmark xc8160de | All versions |
CPE
Remediation
| |
| lexmark xc8160dte | All versions |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| May 6, 2026 | Status Change | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Feb 1, 2016 | Modified Analysis | [email protected] |
| Jan 29, 2016 | Initial Analysis | [email protected] |