Remote Code Execution Vulnerability in Epson WorkForce Printers
CVE-2018-19248

9.1CRITICAL

Key Information:

Vendor

Epson

Vendor
CVE Published:
24 December 2018

What is CVE-2018-19248?

A vulnerability exists in the web service of Epson WorkForce WF-2861 printers that allows an unauthenticated remote attacker to upload a malicious firmware file, thus resetting the printer and potentially taking control of its operations. This is achieved through specific POST requests made to designated URIs. Successful exploitation could lead to further unauthorized actions on the printer and could impact network security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.