Vulnerability index

Browse CVEs

28 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Sb H50 Firmware CRITICAL 9.8
CVE-2026-23767

ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization, does not…

Mitigation only
Fix from $2,300 2026-03-05
Ep 801a Firmware HIGH 7.5
CVE-2023-38556

Improper input validation vulnerability in SEIKO EPSON printer Web Config allows a remote attacker to turned off the printer. [Note] Web Config is t…

Mitigation only
Fix from $1,950 2023-08-02
Lp 9200ps2 Firmware MEDIUM 6.5
CVE-2023-27520

Cross-site request forgery (CSRF) vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote unauthenticated attacker to hija…

Mitigation only
Fix from $1,600 2023-04-11
Tm C3500 Firmware CRITICAL 9.1
CVE-2022-36133

The WebConfig functionality of Epson TM-C3500 and TM-C7500 devices with firmware version WAM31500 allows authentication bypass.

Mitigation only
Fix from $2,300 2022-11-25
Iprojection MEDIUM 5.5
CVE-2020-9453

In Epson iProjection v2.30, the driver file EMP_MPAU.sys allows local users to cause a denial of service (BSOD) or possibly have unspecified other im…

Fix: after 2.30
Fix from $1,600 2021-02-05
Iprojection MEDIUM 5.5
CVE-2020-9014

In Epson iProjection v2.30, the driver file (EMP_NSAU.sys) allows local users to cause a denial of service (BSOD) via crafted input to the virtual au…

Fix: after 2.30
Fix from $1,600 2021-02-05
Epsonnet Setupmanager HIGH 7.8
CVE-2020-5681

Untrusted search path vulnerability in self-extracting files created by EpsonNet SetupManager versions 2.2.14 and earlier, and Offirio SynergyWare Pr…

Fix: 1.6.1.1 / 2.2.15+
Fix from $1,950 2020-12-24
Eps Tse Server 8 Firmware HIGH 8.8
CVE-2020-28931

Lack of an anti-CSRF token in the entire administrative interface in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to force an …

No fix yet
Fix from $1,950 2020-12-16
Eps Tse Server 8 Firmware CRITICAL 9.8
CVE-2020-28929

Unrestricted access to the log downloader functionality in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to remotely retrieve a…

No fix yet
Fix from $2,300 2020-12-16
Eps Tse Server 8 Firmware MEDIUM 5.4
CVE-2020-28930

A Cross-Site Scripting (XSS) issue in the 'update user' and 'delete user' functionalities in settings/users.php in EPSON EPS TSE Server 8 (21.0.11) a…

No fix yet
Fix from $1,600 2020-12-16
Album Print HIGH 7.8
CVE-2020-5674

Untrusted search path vulnerability in the installers of multiple SEIKO EPSON products allows an attacker to gain privileges via a Trojan horse DLL i…

Mitigation only
Fix from $1,950 2020-11-24
Eb 1470ui Firmware CRITICAL 9.1
CVE-2020-6091

An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 MAIN2: 8X7…

Mitigation only
Fix from $2,300 2020-05-22
Ds 570w Firmware HIGH 8.8
CVE-2018-0689

HTTP header injection vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March 13, DS-780N firmware…

Fix: 2017-06-12 / 2017-06-19+
Fix from $1,950 2019-01-09
Ds 570w Firmware MEDIUM 6.1
CVE-2018-0688

Open redirect vulnerability in SEIKO EPSON printers and scanners (DS-570W firmware versions released prior to 2018 March 13, DS-780N firmware version…

Fix: 2017-06-12 / 2017-06-19+
Fix from $1,600 2019-01-09
Epson Workforce Wf 2861 Firmware CRITICAL 9.1
CVE-2018-19248

The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attacker…

No fix yet
Fix from $2,300 2018-12-24
Epson Workforce Wf 2861 Firmware HIGH 7.5
CVE-2018-18959

An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA devices. On the 'Air Print Setting' web page, if the d…

No fix yet
Fix from $1,950 2018-12-24
Epson Workforce Wf 2861 Firmware HIGH 7.5
CVE-2018-19232

The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attacker…

No fix yet
Fix from $1,950 2018-12-24
Epson Workforce Wf 2861 Firmware MEDIUM 5.9
CVE-2018-18960

An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA devices. They use SNMP to find certain devices on the …

No fix yet
Fix from $1,600 2018-12-24
Wf 2750 Firmware HIGH 7.5
CVE-2018-14903

EPSON WF-2750 printers with firmware JP02I2 do not properly validate files before running updates, which allows remote attackers to cause a printer m…

No fix yet
Fix from $1,950 2018-08-30
Wf 2750 Firmware HIGH 7.5
CVE-2018-14900

On EPSON WF-2750 printers with firmware JP02I2, there is no filtering of print jobs. Remote attackers can send print jobs directly to the printer via…

No fix yet
Fix from $1,950 2018-08-30
Iprint HIGH 7.5
CVE-2018-14901

The EPSON iPrint application 6.6.3 for Android contains hard-coded API and Secret keys for the Dropbox, Box, Evernote and OneDrive services.

No fix yet
Fix from $1,950 2018-08-30
Iprint HIGH 7.5
CVE-2018-14902

The ContentProvider in the EPSON iPrint application 6.6.3 for Android does not properly restrict data access. This allows an attacker's application t…

No fix yet
Fix from $1,950 2018-08-30
Wf 2750 Firmware MEDIUM 6.1
CVE-2018-14899

On the EPSON WF-2750 printer with firmware JP02I2, the Web interface AirPrint Setup page is vulnerable to HTML Injection that can redirect users to m…

No fix yet
Fix from $1,600 2018-08-30
Airprint MEDIUM 6.1
CVE-2018-5550EPSS 37%

Versions of Epson AirPrint released prior to January 19, 2018 contain a reflective cross-site scripting (XSS) vulnerability, which can allow untruste…

Fix: 1-19-2018+
Fix from $1,600 2018-02-08
Easymp CRITICAL 9.8
CVE-2017-12860

The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4…

Mitigation only
Fix from $2,300 2017-10-10
Easymp CRITICAL 9.8
CVE-2017-12861

The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4…

Mitigation only
Fix from $2,300 2017-10-10
Tmnet Webconfig MEDIUM 6.1
CVE-2017-6443

Cross-site scripting (XSS) vulnerability in EPSON TMNet WebConfig 1.00 allows remote attackers to inject arbitrary web script or HTML via the W_AD1 p…

No fix yet
Fix from $1,600 2017-03-15
Network Utility MEDIUM 6.9
CVE-2015-6034

EPSON Network Utility 4.10 uses weak permissions (Everyone: Full Control) for eEBSVC.exe, which allows local users to gain privileges via a Trojan ho…

Patch available
Fix from $1,600 2015-10-28