CVE-2024-47295

CVSS 3.0 Score 8.1 of 10 (high)

Details

Published Oct 1, 2024
Updated: Nov 11, 2024
CWE ID 1188

Summary

CVE-2024-47295 is a vulnerability affecting SEIKO EPSON Web Config. This issue results from an insecure initial password configuration, allowing a remote, unauthenticated attacker to set an arbitrary password and gain administrative privileges. By exploiting this vulnerability, malicious actors can take control of the targeted device, potentially leading to unauthorized access, data theft, or system damage. The specific versions impacted have been identified by the vendor, and affected users are encouraged to follow the recommendations provided in the references for remediation.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share