vendor:
EventManager
by:
Luigi Auriemma
7,5
CVSS
HIGH
Denial of Service
119
CWE
Product Name: EventManager
Affected Version From: <= 2.50
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: a:epson:eventmanager
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2012
Epson EventManager Denial of Service Vulnerability
Epson EventManager is a program started when the computer starts and listens on port 2968 ('Network Scan' enabled by default), it allows to automate some actions of the Epson scanners (like the scan&save button) through the PushScan protocol. The secure strncpy function that copies the 'x-protocol-version' string in a 7 bytes buffer can be forced to (auto)terminate the program if it's longer than that size and starts with '1.'
Mitigation:
Upgrade to the latest version of Epson EventManager