ZeroHour

CVE-2026-23767

CVSS 3.1
9.8 critical
EPSS
<1%p38
Published
()
Modified
Description

ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization, does not provide controls to restrict sources or destinations of network communication, and transmits commands without encryption or integrity protection.

Vendors
epson
Products
sb-h50 firmware, tm-h6000v firmware, tm-l100 firmware, tm-m10 firmware, tm-m30 firmware, tm-m30ii firmware, tm-m30ii-h firmware, tm-m30ii-s firmware, tm-m30ii-sl firmware, tm-m30iii firmware, tm-m30iii-h firmware, tm-m55 firmware
Weakness
CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.