Lenovo Printers Missing Authentication Vulnerability Allowing Information Disclosure and Network Settings Modification

Vulnerability

A missing authentication vulnerability exists in certain Lenovo printers, potentially enabling users to access limited device information or alter network settings through the CUPS service.

Impact

Exploitation of this vulnerability could lead to unauthorized access to device information and the ability to modify network configurations.

Remediation

Users are advised to upgrade to the latest firmware versions available for their specific printer model. For technical support during the firmware upgrade process, contact the Lenovo Imaging Service Center at 4006600900.

Added: Sep 11, 2025, 11:15 PM
Updated: Sep 11, 2025, 11:15 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
7.4
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.