Lucene search

K
cve[email protected]CVE-2023-23572
HistoryApr 11, 2023 - 9:15 a.m.

CVE-2023-23572

2023-04-1109:15:07
CWE-79
web.nvd.nist.gov
22
cve-2023-23572
seiko epson
printers
network interface
web config
cross-site scripting
vulnerability
remote attacker

4.8 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

5.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.3%

Cross-site scripting vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script. [Note] Web Config is the software that allows users to check the status and change the settings of SEIKO EPSON printers/network interface via a web browser. According to SEIKO EPSON CORPORATION, it is also called as Remote Manager in some products. Web Config is pre-installed in some printers/network interface provided by SEIKO EPSON CORPORATION. For the details of the affected product names/model numbers, refer to the information provided by the vendor.

Affected configurations

NVD
Node
epsonlp-9200ps2_firmwareMatch-
AND
epsonlp-9200ps2Match-
Node
epsonlp-9200ps3_firmwareMatch-
AND
epsonlp-9200ps3Match-
Node
epsonlp-8200c_firmwareMatch-
AND
epsonlp-8200cMatch-
Node
epsonlp-9600_firmwareMatch-
AND
epsonlp-9600Match-
Node
epsonlp-9600s_firmwareMatch-
AND
epsonlp-9600sMatch-
Node
epsonlp-9300_firmwareMatch-
AND
epsonlp-9300Match-
Node
epsonlp-8500c_firmwareMatch-
AND
epsonlp-8500cMatch-
Node
epsonlp-8700ps3_firmwareMatch-
AND
epsonlp-8700ps3Match-
Node
epsonlp-9800c_firmwareMatch-
AND
epsonlp-9800cMatch-
Node
epsonlp-s5500_firmwareMatch-
AND
epsonlp-s5500Match-
Node
epsonlp-9200b_firmwareMatch-
AND
epsonlp-9200bMatch-
Node
epsonlp-9200c_firmwareMatch-
AND
epsonlp-9200cMatch-
Node
epsonlp-s4500_firmwareMatch-
AND
epsonlp-s4500Match-
Node
epsonlp-s6500_firmwareMatch-
AND
epsonlp-s6500Match-
Node
epsonlp-s7000_firmwareMatch-
AND
epsonlp-s7000Match-
Node
epsonlp-s5000_firmwareMatch-
AND
epsonlp-s5000Match-
Node
epsonlp-s4000_firmwareMatch-
AND
epsonlp-s4000Match-
Node
epsonlp-s6000_firmwareMatch-
AND
epsonlp-s6000Match-
Node
epsonlp-s5300_firmwareMatch-
AND
epsonlp-s5300Match-
Node
epsonlp-s5300r_firmwareMatch-
AND
epsonlp-s5300rMatch-
Node
epsonlp-s300n_firmwareMatch-
AND
epsonlp-s300nMatch-
Node
epsonlp-s310n_firmwareMatch-
AND
epsonlp-s310nMatch-
Node
epsonlp-s3000_firmwareMatch-
AND
epsonlp-s3000Match-
Node
epsonlp-s3000r_firmwareMatch-
AND
epsonlp-s3000rMatch-
Node
epsonlp-s3000zMatch-
AND
epsonlp-s3000z_firmwareMatch-
Node
epsonlp-s3000psMatch-
AND
epsonlp-s3000ps_firmwareMatch-
Node
epsonlp-s7500Match-
AND
epsonlp-s7500_firmwareMatch-
Node
epsonlp-s7500psMatch-
AND
epsonlp-s7500ps_firmwareMatch-
Node
epsonlp-s3500Match-
AND
epsonlp-s3500_firmwareMatch-
Node
epsonlp-s4200Match-
AND
epsonlp-s4200_firmwareMatch-
Node
epsonlp-s9000_firmwareMatch-
AND
epsonlp-s9000Match-
Node
epsonlp-s7100_firmwareMatch-
AND
epsonlp-s7100Match-
Node
epsonlp-s8100_firmwareMatch-
AND
epsonlp-s8100Match-
Node
epsonprifnw1_firmwareMatch-
AND
epsonprifnw1Match-
Node
epsonprifnw1s_firmwareMatch-
AND
epsonprifnw1sMatch-
Node
epsonprifnw2_firmwareMatch-
AND
epsonprifnw2Match-
Node
epsonprifnw2ac_firmwareMatch-
AND
epsonprifnw2acMatch-
Node
epsonprifnw2s_firmwareMatch-
AND
epsonprifnw2sMatch-
Node
epsonprifnw2sac_firmwareMatch-
AND
epsonprifnw2sacMatch-
Node
epsonprifnw3_firmwareMatch-
AND
epsonprifnw3Match-
Node
epsonprifnw3s_firmwareMatch-
AND
epsonprifnw3sMatch-
Node
epsonprifnw6_firmwareMatch-
AND
epsonprifnw6Match-
Node
epsonprifnw7_firmwareMatch-
AND
epsonprifnw7Match-
Node
epsonprifnw7u_firmwareMatch-
AND
epsonprifnw7uMatch-
Node
epsonprifnw7s_firmwareMatch-
AND
epsonprifnw7sMatch-
Node
epsonpa-w11g_firmwareMatch-
AND
epsonpa-w11gMatch-
Node
epsonpa-w11g2_firmwareMatch-
AND
epsonpa-w11g2Match-
Node
epsonesnsb1_firmwareMatch-
AND
epsonesnsb1Match-
Node
epsonesnsb2_firmwareMatch-
AND
epsonesnsb2Match-
Node
epsonesifnw1_firmwareMatch-
AND
epsonesifnw1Match-

CNA Affected

[
  {
    "vendor": "SEIKO EPSON CORPORATION",
    "product": "SEIKO EPSON printers/network interface Web Config",
    "versions": [
      {
        "version": "unspecified",
        "status": "affected"
      }
    ]
  }
]

4.8 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

HIGH

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

5.2 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

44.3%

Related for CVE-2023-23572