TROYANOSYVIRUS
Back to CVEs

CVE-2020-6091

CRITICAL
9.1

Description

An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 MAIN2: 8X7325WWV303. A specially crafted series of HTTP requests can cause authentication bypass resulting in information disclosure. An attacker can send an HTTP request to trigger this vulnerability.

CVE Details

CVSS v3.1 Score9.1
SeverityCRITICAL
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published5/22/2020
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

epson:eb-1470uiepson:eb-1470ui_firmware

Weaknesses (CWE)

CWE-288CWE-287

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.