Untrusted search path vulnerability in the installers of multiple SEIKO EPSON products allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
References
| Link | Resource |
|---|---|
| https://jvn.jp/en/jp/JVN26835001/index.html | Third Party Advisory |
| https://www.epson.jp/support/misc_t/201119_oshirase.htm | Vendor Advisory |
| https://www.epson.jp/support/pdf/fy20-001_softwareList_20201106_b.pdf | Vendor Advisory |
| https://jvn.jp/en/jp/JVN26835001/index.html | Third Party Advisory |
| https://www.epson.jp/support/misc_t/201119_oshirase.htm | Vendor Advisory |
| https://www.epson.jp/support/pdf/fy20-001_softwareList_20201106_b.pdf | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
History
21 Nov 2024, 05:34
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://jvn.jp/en/jp/JVN26835001/index.html - Third Party Advisory | |
| References | () https://www.epson.jp/support/misc_t/201119_oshirase.htm - Vendor Advisory | |
| References | () https://www.epson.jp/support/pdf/fy20-001_softwareList_20201106_b.pdf - Vendor Advisory |
Information
Published : 2020-11-24 07:15
Updated : 2024-11-21 05:34
NVD link : CVE-2020-5674
Mitre link : CVE-2020-5674
CVE.ORG link : CVE-2020-5674
JSON object : View
Products Affected
epson
- scanner_driver
- webconfig
- photostarter
- creativity_suite
- easy_settings
- color_calibration_utility
- web_to_page
- print_image_framer_tool
- net_print
- colorio_easy_print
- remote_printer_driver
- photoquicker
- colorbase
- album_print
- pm-t990_integrated_installer
- prolab_print
- imaging_workshop
- easy_photo_print
- status_monitor_2
- universal_print_driver
- net_config_se
- status_monitor_3
- print_layout
- net_software_development_kit
- multi-print_quicker
- ec-01_firmware
- link2
- photolier
- ec-01
- e-photo
- connect
- net_config
- scan_icm_updater
microsoft
- windows_me
- windows_98
- windows
CWE
CWE-427
Uncontrolled Search Path Element
