Cross-Site Scripting Vulnerability in SEIKO EPSON Printers and Network Interface
CVE-2023-23572

4.8MEDIUM

What is CVE-2023-23572?

A cross-site scripting vulnerability exists in the Web Config interface used for SEIKO EPSON printers and network interfaces. This flaw allows a remote authenticated attacker with administrative privileges to inject arbitrary scripts, potentially compromising the integrity and confidentiality of sensitive information. Users are advised to review the security settings of their devices and apply any necessary updates or patches provided by SEIKO EPSON CORPORATION to mitigate risks associated with this oversight.

Affected Version(s)

SEIKO EPSON printers/network interface Web Config = unspecified

References

CVSS V3.1

Score:
4.8
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.