CVE-2023-23572

Cross-site scripting vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script. [Note] Web Config is the software that allows users to check the status and change the settings of SEIKO EPSON printers/network interface via a web browser. According to SEIKO EPSON CORPORATION, it is also called as Remote Manager in some products. Web Config is pre-installed in some printers/network interface provided by SEIKO EPSON CORPORATION. For the details of the affected product names/model numbers, refer to the information provided by the vendor.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.8 MEDIUM
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
jpcertCNA
---
---
CVEADP
---
---
CISA-ADPADP
4.8 MEDIUM
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 51%
VendorProductVersion
epsonlp-9200ps2_firmware
-
epsonlp-9200ps3_firmware
-
epsonlp-8200c_firmware
-
epsonlp-9600_firmware
-
epsonlp-9600s_firmware
-
epsonlp-9300_firmware
-
epsonlp-8500c_firmware
-
epsonlp-8700ps3_firmware
-
epsonlp-9800c_firmware
-
epsonlp-s5500_firmware
-
epsonlp-9200b_firmware
-
epsonlp-9200c_firmware
-
epsonlp-s4500_firmware
-
epsonlp-s6500_firmware
-
epsonlp-s7000_firmware
-
epsonlp-s5000_firmware
-
epsonlp-s4000_firmware
-
epsonlp-s6000_firmware
-
epsonlp-s5300_firmware
-
epsonlp-s5300r_firmware
-
epsonlp-s300n_firmware
-
epsonlp-s310n_firmware
-
epsonlp-s3000_firmware
-
epsonlp-s3000r_firmware
-
epsonlp-s3000z_firmware
-
epsonlp-s3000ps_firmware
-
epsonlp-s7500_firmware
-
epsonlp-s7500ps_firmware
-
epsonlp-s3500_firmware
-
epsonlp-s4200_firmware
-
epsonlp-s9000_firmware
-
epsonlp-s7100_firmware
-
epsonlp-s8100_firmware
-
epsonprifnw1_firmware
-
epsonprifnw1s_firmware
-
epsonprifnw2_firmware
-
epsonprifnw2ac_firmware
-
epsonprifnw2s_firmware
-
epsonprifnw2sac_firmware
-
epsonprifnw3_firmware
-
epsonprifnw3s_firmware
-
epsonprifnw6_firmware
-
epsonprifnw7_firmware
-
epsonprifnw7u_firmware
-
epsonprifnw7s_firmware
-
epsonpa-w11g_firmware
-
epsonpa-w11g2_firmware
-
epsonesnsb1_firmware
-
epsonesnsb2_firmware
-
epsonesifnw1_firmware
-
𝑥
= Vulnerable software versions