Date: 07/15/2021 Affected Product: Lexmark Universal Print Driver (and various other driver packages) Product Website: https://www.lexmark.com/en_us/support/universal-print-driver.html Vulnerable Versions: Universal Print Driver v2.15.1.0 and below. Patched Version: Universal Print Driver v2.15.2.0 and above. Vendor Advisory: http://support.lexmark.com/index?page=content&id=TE953 # CVE-2021-35449 (CWE-732) Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below, and G4 driver 4.2.1.0 and below are affected by a privilege escalation vulnerability. A standard low priviliged user can use the driver to execute a DLL of their choosing during the add printer process, resulting in escalation of privileges to SYSTEM. CVSSv3: AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H (7.8)