EPSON vulnerabilities
3 CVEs tracked
EPSON appears in our threat intelligence reporting primarily within the context of projector device vulnerabilities, specifically the EH-TW5350 model. The main themes revolve around authentication and verification flaws. CVE-2021-43718 describes an Authentication Bypass that could lead to remote Denial of Service via crafted HTTP requests. CVE-2021-43717 enables unauthorized access through hard-coded credentials in the iProjection application. Defenders should focus on the network exposure of these projectors, particularly regarding the firmware update mechanism due to the verification bypass in EasyMP Network Updater (CVE-2021-43716).
Azərbaycanca: EPSON, xüsusilə proyektor cihazları ilə bağlı təhlükəsizlik hesabatlarımızda qeyd olunur. Əsas diqqət mərkəzində EH-TW5350 modeli üzərindəki autentifikasiya və doğrulama problemləri dayanır. CVE-2021-43718 autentifikasiyadan yan keçmə (Authentication Bypass) zəifliyi vasitəsilə uzaqdan xidmət əleyhinə (Denial of Service) hücumlara şərait yaradır. CVE-2021-43717 isə saxlanılmış etimadnamələr (hard-coded credentials) ilə cihaza icazəsiz girişi mümkün edir. Müdafiəçilər bu cihazların şəbəkə üzərindən idarə olunmasına diqqət yetirməli, xüsusilə CVE-2021-43716 bağlı EasyMP Network Updater-in proqram təminatının doğrulama mexanizminin zəifliyini nəzərə almalıdırlar.
This vendor's CVEs3
This hub is built from skopnix's own reporting on EPSON: the overview is AI-written from that coverage and every CVE links to its grounded explainer. KEV status comes from CISA's Known Exploited Vulnerabilities catalog and EPSS from FIRST — vendor, version and score details are never invented.