TROYANOSYVIRUS
Back to CVEs

CVE-2010-3920

N/A

Description

The Seiko Epson printer driver installers for LP-S9000 before 4.1.11 and LP-S7100 before 4.1.7, or as downloaded from the vendor between May 2010 and 20101125, set weak permissions for the "C:\Program Files" folder, which might allow local users to bypass intended access restrictions and create or modify arbitrary files and directories.

CVE Details

CVSS v3.1 ScoreN/A
Published12/8/2010
Last Modified4/29/2026
Sourcenvd
Honeypot Sightings0

Affected Products

epson:lp-s7100epson:lp-s7100_driver_4.1.0epson:lp-s7100_driver_4.1.7epson:lp-s9000epson:lp-s9000_driver_4.1.0epson:lp-s9000_driver_4.1.11

Weaknesses (CWE)

CWE-264

References

http://osvdb.org/69678(vultures@jpcert.or.jp)
http://jvn.jp/en/jp/JVN62736872/index.html(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/69678(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/42540(af854a3a-2127-422b-91ae-364da2661108)
http://www.epson.jp/support/misc/lps7100_9000/index.htm(af854a3a-2127-422b-91ae-364da2661108)

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.