Epson kayıtları
epson üreticisine ait 34 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %2,9
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-306 Missing Authentication for Critical Function3
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-798 Use of Hard-coded Credentials2
- CWE-427 Uncontrolled Search Path Element2
- CWE-276 Incorrect Default Permissions2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
34 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2017-12860İstismar yok | The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using aepson · easymp · CWE-798 | Kritik9,8 | — | %3,5 | 10 Eki 2017 |
40Planlayın | CVE-2017-12861İstismar yok | The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using aepson · easymp · CWE-521 | Kritik9,8 | — | %3,3 | 10 Eki 2017 |
39İzleyin | CVE-2020-28929İstismar yok | Unrestricted access to the log downloader functionality in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to remotely repson · eps tse server 8 firmware · CWE-306 | Kritik9,8 | — | %1,2 | 16 Ara 2020 |
39İzleyin | CVE-2026-23767İstismar yok | ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization,epson · sb-h50 firmware · CWE-306 | Kritik9,8 | — | %0,4 | 5 Mar 2026 |
37İzleyin | CVE-2020-6091İstismar yok | An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 Mepson · eb-1470ui firmware · CWE-288 | Kritik9,1 | — | %2,3 | 22 May 2020 |
36İzleyin | CVE-2018-19248İstismar yok | The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remoteepson · epson workforce wf-2861 firmware · CWE-306 | Kritik9,1 | — | %1,5 | 24 Ara 2018 |
36İzleyin | CVE-2022-36133İstismar yok | The WebConfig functionality of Epson TM-C3500 and TM-C7500 devices with firmware version WAM31500 allows authentication bypass.epson · tm-c3500 firmware · CWE-287 | Kritik9,1 | — | %0,7 | 25 Kas 2022 |
35İzleyin | CVE-2018-5550İstismar yok | Versions of Epson AirPrint released prior to January 19, 2018 contain a reflective cross-site scripting (XSS) vulnerability, which can allowepson · airprint · CWE-79 | Orta6,1 | — | %36,9 | 8 Şub 2018 |
35İzleyin | CVE-2020-12695Kavram kanıtı | The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivenec · wr8165n · CWE-276 | Yüksek7,5 | — | %15,2 | 8 Haz 2020 |
35İzleyin | CVE-2018-0689İstismar yok | HTTP header injection vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March 13, DS-780Nepson · ds-570w firmware · CWE-113 | Yüksek8,8 | — | %1,6 | 9 Oca 2019 |
35İzleyin | CVE-2020-28931İstismar yok | Lack of an anti-CSRF token in the entire administrative interface in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to epson · eps tse server 8 firmware · CWE-352 | Yüksek8,8 | — | %0,5 | 16 Ara 2020 |
35İzleyin | CVE-2019-20458İstismar yok | An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices.CWE-276 | Yüksek8,8 | — | %0,4 | 7 Kas 2024 |
35İzleyin | CVE-2019-20460İstismar yok | An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices.CWE-352 | Yüksek8,8 | — | %0,2 | 7 Kas 2024 |
33İzleyin | CVE-2019-20459İstismar yok | An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices. | Yüksek8,4 | — | %0,3 | 7 Kas 2024 |
31İzleyin | CVE-2020-5681İstismar yok | Untrusted search path vulnerability in self-extracting files created by EpsonNet SetupManager versions 2.2.14 and earlier, and Offirio Synerepson · epsonnet setupmanager · CWE-427 | Yüksek7,8 | — | %0,9 | 23 Ara 2020 |
31İzleyin | CVE-2020-5674İstismar yok | Untrusted search path vulnerability in the installers of multiple SEIKO EPSON products allows an attacker to gain privileges via a Trojan hoepson · album print · CWE-427 | Yüksek7,8 | — | %0,3 | 24 Kas 2020 |
30İzleyin | CVE-2018-19232İstismar yok | The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remoteepson · epson workforce wf-2861 firmware | Yüksek7,5 | — | %1,4 | 24 Ara 2018 |
30İzleyin | CVE-2018-14902İstismar yok | The ContentProvider in the EPSON iPrint application 6.6.3 for Android does not properly restrict data access.epson · iprint · CWE-200 | Yüksek7,5 | — | %1,2 | 30 Ağu 2018 |
30İzleyin | CVE-2018-18959İstismar yok | An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA devices.epson · epson workforce wf-2861 firmware · CWE-119 | Yüksek7,5 | — | %1,2 | 24 Ara 2018 |
30İzleyin | CVE-2018-14901İstismar yok | The EPSON iPrint application 6.6.3 for Android contains hard-coded API and Secret keys for the Dropbox, Box, Evernote and OneDrive services.epson · iprint · CWE-798 | Yüksek7,5 | — | %1,1 | 30 Ağu 2018 |
30İzleyin | CVE-2018-14900İstismar yok | On EPSON WF-2750 printers with firmware JP02I2, there is no filtering of print jobs.epson · wf-2750 firmware · CWE-417 | Yüksek7,5 | — | %1,1 | 30 Ağu 2018 |
30İzleyin | CVE-2023-38556İstismar yok | Improper input validation vulnerability in SEIKO EPSON printer Web Config allows a remote attacker to turned off the printer.epson · ep-801a firmware | Yüksek7,5 | — | %0,9 | 2 Ağu 2023 |
30İzleyin | CVE-2018-14903İstismar yok | EPSON WF-2750 printers with firmware JP02I2 do not properly validate files before running updates, which allows remote attackers to cause a epson · wf-2750 firmware · CWE-346 | Yüksek7,5 | — | %0,5 | 30 Ağu 2018 |
27İzleyin | CVE-2015-6034İstismar yok | EPSON Network Utility 4.10 uses weak permissions (Everyone: Full Control) for eEBSVC.exe, which allows local users to gain privileges via a epson · network utility · CWE-264 | Orta6,9 | — | %0,3 | 28 Eki 2015 |
26İzleyin | CVE-2023-27520İstismar yok | Cross-site request forgery (CSRF) vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote unauthenticated attackeepson · lp-9200ps2 firmware · CWE-352 | Orta6,5 | — | %0,3 | 11 Nis 2023 |
- CVE-2017-1286040Planlayın
The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a
KritikCVSS 9,8İstismar yokEPSS %3epson · easymp10 Eki 2017
- CVE-2017-1286140Planlayın
The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a
KritikCVSS 9,8İstismar yokEPSS %3epson · easymp10 Eki 2017
- CVE-2020-2892939İzleyin
Unrestricted access to the log downloader functionality in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to remotely r
KritikCVSS 9,8İstismar yokEPSS %1epson · eps tse server 8 firmware16 Ara 2020
- CVE-2026-2376739İzleyin
ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization,
KritikCVSS 9,8İstismar yokEPSS %0epson · sb-h50 firmware5 Mar 2026
- CVE-2020-609137İzleyin
An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 M
KritikCVSS 9,1İstismar yokEPSS %2epson · eb-1470ui firmware22 May 2020
- CVE-2018-1924836İzleyin
The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote
KritikCVSS 9,1İstismar yokEPSS %1epson · epson workforce wf-2861 firmware24 Ara 2018
- CVE-2022-3613336İzleyin
The WebConfig functionality of Epson TM-C3500 and TM-C7500 devices with firmware version WAM31500 allows authentication bypass.
KritikCVSS 9,1İstismar yokEPSS %1epson · tm-c3500 firmware25 Kas 2022
- CVE-2018-555035İzleyin
Versions of Epson AirPrint released prior to January 19, 2018 contain a reflective cross-site scripting (XSS) vulnerability, which can allow
OrtaCVSS 6,1İstismar yokEPSS %37epson · airprint8 Şub 2018
- CVE-2020-1269535İzleyin
The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delive
YüksekCVSS 7,5Kavram kanıtıEPSS %15nec · wr8165n8 Haz 2020
- CVE-2018-068935İzleyin
HTTP header injection vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March 13, DS-780N
YüksekCVSS 8,8İstismar yokEPSS %2epson · ds-570w firmware9 Oca 2019
- CVE-2020-2893135İzleyin
Lack of an anti-CSRF token in the entire administrative interface in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to
YüksekCVSS 8,8İstismar yokEPSS %1epson · eps tse server 8 firmware16 Ara 2020
- CVE-2019-2045835İzleyin
An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices.
YüksekCVSS 8,8İstismar yokEPSS %07 Kas 2024
- CVE-2019-2046035İzleyin
An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices.
YüksekCVSS 8,8İstismar yokEPSS %07 Kas 2024
- CVE-2019-2045933İzleyin
An issue was discovered on Epson Expression Home XP255 20.08.FM10I8 devices.
YüksekCVSS 8,4İstismar yokEPSS %07 Kas 2024
- CVE-2020-568131İzleyin
Untrusted search path vulnerability in self-extracting files created by EpsonNet SetupManager versions 2.2.14 and earlier, and Offirio Syner
YüksekCVSS 7,8İstismar yokEPSS %1epson · epsonnet setupmanager23 Ara 2020
- CVE-2020-567431İzleyin
Untrusted search path vulnerability in the installers of multiple SEIKO EPSON products allows an attacker to gain privileges via a Trojan ho
YüksekCVSS 7,8İstismar yokEPSS %0epson · album print24 Kas 2020
- CVE-2018-1923230İzleyin
The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote
YüksekCVSS 7,5İstismar yokEPSS %1epson · epson workforce wf-2861 firmware24 Ara 2018
- CVE-2018-1490230İzleyin
The ContentProvider in the EPSON iPrint application 6.6.3 for Android does not properly restrict data access.
YüksekCVSS 7,5İstismar yokEPSS %1epson · iprint30 Ağu 2018
- CVE-2018-1895930İzleyin
An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA devices.
YüksekCVSS 7,5İstismar yokEPSS %1epson · epson workforce wf-2861 firmware24 Ara 2018
- CVE-2018-1490130İzleyin
The EPSON iPrint application 6.6.3 for Android contains hard-coded API and Secret keys for the Dropbox, Box, Evernote and OneDrive services.
YüksekCVSS 7,5İstismar yokEPSS %1epson · iprint30 Ağu 2018
- CVE-2018-1490030İzleyin
On EPSON WF-2750 printers with firmware JP02I2, there is no filtering of print jobs.
YüksekCVSS 7,5İstismar yokEPSS %1epson · wf-2750 firmware30 Ağu 2018
- CVE-2023-3855630İzleyin
Improper input validation vulnerability in SEIKO EPSON printer Web Config allows a remote attacker to turned off the printer.
YüksekCVSS 7,5İstismar yokEPSS %1epson · ep-801a firmware2 Ağu 2023
- CVE-2018-1490330İzleyin
EPSON WF-2750 printers with firmware JP02I2 do not properly validate files before running updates, which allows remote attackers to cause a
YüksekCVSS 7,5İstismar yokEPSS %1epson · wf-2750 firmware30 Ağu 2018
- CVE-2015-603427İzleyin
EPSON Network Utility 4.10 uses weak permissions (Everyone: Full Control) for eEBSVC.exe, which allows local users to gain privileges via a
OrtaCVSS 6,9İstismar yokEPSS %0epson · network utility28 Eki 2015
- CVE-2023-2752026İzleyin
Cross-site request forgery (CSRF) vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote unauthenticated attacke
OrtaCVSS 6,5İstismar yokEPSS %0epson · lp-9200ps2 firmware11 Nis 2023