CVE-2023-38556

Improper input validation vulnerability in SEIKO EPSON printer Web Config allows a remote attacker to turned off the printer. [Note] Web Config is the software that allows users to check the status and change the settings of SEIKO EPSON printers via a web browser. Web Config is pre-installed in some printers provided by SEIKO EPSON CORPORATION. For the details of the affected product names/model numbers, refer to the information provided by the vendor.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:epson:ep-801a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-801a:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:epson:ep-802a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-802a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:epson:ep-901a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-901a:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:epson:ep-901f_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-901f:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:epson:ep-902a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-902a:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:epson:pa-tcu1_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:pa-tcu1:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:epson:pm-t960_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:pm-t960:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:epson:pm-t990_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:pm-t990:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:epson:px-201_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-201:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:epson:px-502a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-502a:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:epson:px-601f_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-601f:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:epson:px-602f_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-602f:-:*:*:*:*:*:*:*

History

07 Aug 2023, 19:24

Type Values Removed Values Added
CWE NVD-CWE-noinfo
References (MISC) https://jvn.jp/en/jp/JVN61337171/ - (MISC) https://jvn.jp/en/jp/JVN61337171/ - Third Party Advisory
References (MISC) https://www.epson.jp/support/misc_t/230802_oshirase.htm - (MISC) https://www.epson.jp/support/misc_t/230802_oshirase.htm - Vendor Advisory
CPE cpe:2.3:o:epson:ep-901a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-502a:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:px-602f_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:px-601f_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-802a:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-201:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:pm-t960_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:ep-801a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:pa-tcu1_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:ep-901f_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:px-502a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-901a:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-601f:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:px-602f:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:pm-t960:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-902a:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-801a:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:ep-901f:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:pm-t990:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:ep-802a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:ep-902a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:pm-t990_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:epson:px-201_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:epson:pa-tcu1:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

02 Aug 2023, 08:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-02 08:15

Updated : 2024-02-05 00:01


NVD link : CVE-2023-38556

Mitre link : CVE-2023-38556

CVE.ORG link : CVE-2023-38556


JSON object : View

Products Affected

epson

  • ep-802a_firmware
  • pm-t960
  • pm-t990
  • px-601f
  • px-201_firmware
  • px-502a_firmware
  • pm-t990_firmware
  • pa-tcu1
  • ep-902a
  • px-601f_firmware
  • ep-801a_firmware
  • px-502a
  • px-602f
  • ep-901f
  • ep-801a
  • pm-t960_firmware
  • ep-901a_firmware
  • pa-tcu1_firmware
  • ep-902a_firmware
  • px-201
  • ep-802a
  • ep-901a
  • ep-901f_firmware
  • px-602f_firmware