CVE-2022-36133

The WebConfig functionality of Epson TM-C3500 and TM-C7500 devices with firmware version WAM31500 allows authentication bypass.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:epson:tm-c3500_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c3500:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:epson:tm-c3510_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c3510:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:epson:tm-c3520_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c3520:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:epson:tm-c7500_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7500:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:epson:tm-c7500g_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7500g:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:epson:tm-c7510_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7510:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:epson:tm-c7510g_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7510g:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:epson:tm-c7520_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7520:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:epson:tm-c7520g_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7520g:-:*:*:*:*:*:*:*

History

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-287 NVD-CWE-noinfo

30 Nov 2022, 20:49

Type Values Removed Values Added
CWE CWE-287
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.1
References (MISC) https://download.epson-biz.com/modules/colorworks/ - (MISC) https://download.epson-biz.com/modules/colorworks/ - Product, Vendor Advisory
References (MISC) https://download.epson-biz.com/epson/epson_public_document.php?name=Infomation_history.pdf - (MISC) https://download.epson-biz.com/epson/epson_public_document.php?name=Infomation_history.pdf - Vendor Advisory
CPE cpe:2.3:o:epson:tm-c7510_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7500:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c3520:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c3510:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7520g:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c7520g_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c7520_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c7500g_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c3500_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7510g:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c3500:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7510:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c7510g_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c3510_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c3520_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7520:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:tm-c7500_firmware:wam31500:*:*:*:*:*:*:*
cpe:2.3:h:epson:tm-c7500g:-:*:*:*:*:*:*:*

25 Nov 2022, 13:59

Type Values Removed Values Added
New CVE

Information

Published : 2022-11-25 06:15

Updated : 2024-02-04 23:14


NVD link : CVE-2022-36133

Mitre link : CVE-2022-36133

CVE.ORG link : CVE-2022-36133


JSON object : View

Products Affected

epson

  • tm-c7500g_firmware
  • tm-c3500_firmware
  • tm-c3520
  • tm-c3510
  • tm-c7510g_firmware
  • tm-c7500g
  • tm-c3520_firmware
  • tm-c7500
  • tm-c7510
  • tm-c7520
  • tm-c7520g
  • tm-c7520_firmware
  • tm-c3510_firmware
  • tm-c7520g_firmware
  • tm-c3500
  • tm-c7510g
  • tm-c7500_firmware
  • tm-c7510_firmware