CVE-2014-8741 is a critical directory traversal vulnerability affecting Lexmark MarkVision Enterprise versions prior to 2.1, specifically within the GfdFileUploadServerlet servlet. This flaw allows unauthenticated remote attackers to write arbitrary files to the system with high impact on confidentiality, integrity, and availability. With a CVSS score of 9.8 and readily available Metasploit exploit modules, this vulnerability is easily exploitable. Although not on the KEV catalog, its high EPSS score and community discussion indicate significant exploitability and attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 2.1CPE matchmatch criteria | cpe:2.3:a:lexmark:markvision_enterprise:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.