CVE-2023-27520

Cross-site request forgery (CSRF) vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote unauthenticated attacker to hijack the authentication and perform unintended operations by having a logged-in user view a malicious page. [Note] Web Config is the software that allows users to check the status and change the settings of SEIKO EPSON printers/network interface via a web browser. According to SEIKO EPSON CORPORATION, it is also called as Remote Manager in some products. Web Config is pre-installed in some printers/network interface provided by SEIKO EPSON CORPORATION. For the details of the affected product names/model numbers, refer to the information provided by the vendor.
CSRF
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
jpcertCNA
---
---
CVEADP
---
---
CISA-ADPADP
6.5 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 60%
VendorProductVersion
epsonlp-9200ps2_firmware
-
epsonlp-9200ps3_firmware
-
epsonlp-8200c_firmware
-
epsonlp-9600_firmware
-
epsonlp-9600s_firmware
-
epsonlp-9300_firmware
-
epsonlp-8500c_firmware
-
epsonlp-8700ps3_firmware
-
epsonlp-9800c_firmware
-
epsonlp-s5500_firmware
-
epsonlp-9200b_firmware
-
epsonlp-9200c_firmware
-
epsonlp-s4500_firmware
-
epsonlp-s6500_firmware
-
epsonlp-s7000_firmware
-
epsonlp-s5000_firmware
-
epsonlp-s4000_firmware
-
epsonlp-s6000_firmware
-
epsonlp-s5300_firmware
-
epsonlp-s5300r_firmware
-
epsonlp-s300n_firmware
-
epsonlp-s310n_firmware
-
epsonlp-s3000_firmware
-
epsonlp-s3000r_firmware
-
epsonlp-s3000z_firmware
-
epsonlp-s3000ps_firmware
-
epsonlp-s7500_firmware
-
epsonlp-s7500ps_firmware
-
epsonlp-s3500_firmware
-
epsonlp-s4200_firmware
-
epsonlp-s9000_firmware
-
epsonlp-s7100_firmware
-
epsonlp-s8100_firmware
-
epsonprifnw1_firmware
-
epsonprifnw1s_firmware
-
epsonprifnw2_firmware
-
epsonprifnw2ac_firmware
-
epsonprifnw2s_firmware
-
epsonprifnw2sac_firmware
-
epsonprifnw3_firmware
-
epsonprifnw3s_firmware
-
epsonprifnw6_firmware
-
epsonprifnw7_firmware
-
epsonprifnw7u_firmware
-
epsonprifnw7s_firmware
-
epsonpa-w11g_firmware
-
epsonpa-w11g2_firmware
-
epsonesnsb1_firmware
-
epsonesnsb2_firmware
-
epsonesifnw1_firmware
-
epsonsc-t3250_firmware
-
epsonsc-t3255_firmware
-
epsonsc-t5250_firmware
-
epsonsc-t5255_firmware
-
epsonsc-t7250_firmware
-
epsonsc-t7255_firmware
-
epsonsc-t5250d_firmware
-
epsonsc-t5255d_firmware
-
epsonsc-t7250d_firmware
-
epsonsc-t7255d_firmware
-
epsonsc-p5050_firmware
-
epsonsc-p7050_firmware
-
epsonsc-p9050_firmware
-
epsonsc-p6050_firmware
-
epsonsc-p8050_firmware
-
epsonsc-p20050_firmware
-
epsonsc-s80650_firmware
-
epsonsc-s60650_firmware
-
epsonsc-s40650_firmware
-
epsonsc-s60650l_firmware
-
epsonsc-s80650l_firmware
-
epsonsc-f7200_firmware
-
epsonsc-f6350_firmware
-
epsonsc-f9450_firmware
-
epsonsc-f9450h_firmware
-
epsonsc-f2150_firmware
-
epsontm-c7500_firmware
-
epsontm-c3500_firmware
-
epsontm-c3400_firmware
-
epsonpx-b510_firmware
-
epsonpx-b500_firmware
-
epsonpx-5800_firmware
-
epsonpx-5002_firmware
-
epsonpx-5v_firmware
-
epsonpx-7v_firmware
-
epsonsc-px7v2_firmware
-
epsonsc-px5v2_firmware
-
epsonsc-px3v_firmware
-
epsonpx-6250s_firmware
-
epsonpx-6550_firmware
-
epsonpx-7500n_firmware
-
epsonpx-7550_firmware
-
epsonpx-7550s_firmware
-
epsonpx-9500n_firmware
-
epsonpx-9550_firmware
-
epsonpx-9550s_firmware
-
epsonpx-20000_firmware
-
epsonstylus_pro_gs6000_firmware
-
epsonpx-w8000_firmware
-
epsonpx-f8000_firmware
-
epsonpx-f8000m_firmware
-
epsonpx-f10000_firmware
-
epsonpx-h6000_firmware
-
epsonpx-h7000_firmware
-
epsonpx-h8000_firmware
-
epsonpx-h9000_firmware
-
epsonpx-h10000_firmware
-
epsonsc-t3050_firmware
-
epsonsc-t5050_firmware
-
epsonsc-t7050_firmware
-
epsonsc-p10050_firmware
-
epsonsc-s30650_firmware
-
epsonsc-s50650_firmware
-
epsonsc-s70650_firmware
-
epsonsc-f6000_firmware
-
epsonsc-f7100_firmware
-
epsonsc-f6200_firmware
-
epsonsc-f9200_firmware
-
epsonsc-f9350_firmware
-
epsonsc-f2000_firmware
-
𝑥
= Vulnerable software versions