Cross-site request forgery (CSRF) vulnerability in SEIKO EPSON printers/network interface Web Config allows a remote unauthenticated attacker to hijack the authentication and perform unintended operations by having a logged-in user view a malicious page. [Note] Web Config is the software that allows users to check the status and change the settings of SEIKO EPSON printers/network interface via a web browser. According to SEIKO EPSON CORPORATION, it is also called as Remote Manager in some products. Web Config is pre-installed in some printers/network interface provided by SEIKO EPSON CORPORATION. For the details of the affected product names/model numbers, refer to the information provided by the vendor.
History

Mon, 10 Feb 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2025-02-10T21:27:09.702Z

Reserved: 2023-03-02T00:00:00.000Z

Link: CVE-2023-27520

cve-icon Vulnrichment

Updated: 2024-08-02T12:16:35.577Z

cve-icon NVD

Status : Modified

Published: 2023-04-11T09:15:08.157

Modified: 2025-02-10T22:15:31.220

Link: CVE-2023-27520

cve-icon Redhat

No data.