9.8

CVE-2026-23767

ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization, does not provide controls to restrict sources or destinations of network communication, and transmits commands without encryption or integrity protection.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
EpsonSb-h50 Firmware Version-
   EpsonSb-h50 Version-
EpsonTm-h6000v Firmware Version-
   EpsonTm-h6000v Version-
EpsonTm-l100 Firmware Version-
   EpsonTm-l100 Version-
EpsonTm-m10 Firmware Version-
   EpsonTm-m10 Version-
EpsonTm-m30 Firmware Version-
   EpsonTm-m30 Version-
EpsonTm-m30ii Firmware Version-
   EpsonTm-m30ii Version-
EpsonTm-m30ii-h Firmware Version-
   EpsonTm-m30ii-h Version-
EpsonTm-m30ii-s Firmware Version-
   EpsonTm-m30ii-s Version-
EpsonTm-m30ii-sl Firmware Version-
   EpsonTm-m30ii-sl Version-
EpsonTm-m30iii Firmware Version-
   EpsonTm-m30iii Version-
EpsonTm-m30iii-h Firmware Version-
   EpsonTm-m30iii-h Version-
EpsonTm-m55 Firmware Version-
   EpsonTm-m55 Version-
EpsonTm-p20ii Firmware Version-
   EpsonTm-p20ii Version-
EpsonTm-p80ii Firmware Version-
   EpsonTm-p80ii Version-
EpsonTm-p20 Firmware Version-
   EpsonTm-p20 Version-
EpsonTm-p60ii Firmware Version-
   EpsonTm-p60ii Version-
EpsonTm-p80 Firmware Version-
   EpsonTm-p80 Version-
EpsonTm-t20ii Firmware Version-
   EpsonTm-t20ii Version-
EpsonTm-t20iii Firmware Version-
   EpsonTm-t20iii Version-
EpsonTm-t88vi Firmware Version-
   EpsonTm-t88vi Version-
EpsonTm-t88vi-ihub Firmware Version-
   EpsonTm-t88vi-ihub Version-
EpsonTm-t88vii Firmware Version-
   EpsonTm-t88vii Version-
EpsonUb-r04 Firmware Version-
   EpsonUb-r04 Version-
EpsonUb-e04 Firmware Version-
   EpsonUb-e04 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.205
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
134c704f-9b21-4f2e-91b3-4a467353bcc0 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-306 Missing Authentication for Critical Function

The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.