CVE-2025-9214: CWE-306: Missing Authentication for Critical Function in Lenovo LJ2206W Printer
Severity: mediumType: vulnerabilityCVE-2025-9214
A missing authentication vulnerability was reported in some Lenovo printers that could allow a user to view limited device information or modify network settings via the CUPS service.
CVE-2025-9214: CWE-306: Missing Authentication for Critical Function in Lenovo LJ2206W Printer
Medium
Published: Thu Sep 11 2025 (09/11/2025, 18:33:37 UTC)
Source: CVE Database V5
Vendor/Project: Lenovo
Product: LJ2206W Printer
Description
A missing authentication vulnerability was reported in some Lenovo printers that could allow a user to view limited device information or modify network settings via the CUPS service.
Technical Details
- Data Version
- 5.1
- Assigner Short Name
- lenovo
- Date Reserved
- 2025-08-19T19:47:09.027Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 68c3168a00f99c09afdc964d
Added to database: 9/11/2025, 6:35:54 PM
Last updated: 9/11/2025, 6:35:54 PM
Views: 1
Related Threats
CVE-2025-9319: CWE-494: Download of Code Without Integrity Check in Lenovo Wallpaper Client
HighVulnerabilityThu Sep 11 2025
CVE-2025-9201: CWE-427: Uncontrolled Search Path Element in Lenovo Browser
HighVulnerabilityThu Sep 11 2025
CVE-2025-8557: CWE-420: Unprotected Alternate Channel in Lenovo XClarity Orchestrator (LXCO)
HighVulnerabilityThu Sep 11 2025
CVE-2025-8061: CWE-782: Exposed IOCTL with Insufficient Access Control in Lenovo Dispatcher 3.0 Driver
HighVulnerabilityThu Sep 11 2025
CVE-2025-59053: CWE-94: Improper Control of Generation of Code ('Code Injection') in moeru-ai airi
CriticalVulnerabilityThu Sep 11 2025
Actions
Please log in to the Console to use AI analysis features.
External Links
Need enhanced features?
Contact root@offseq.com for Pro access with improved analysis and higher rate limits.