CVE-2017-12860

The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only those who can view it are streaming.In addition to the password, each projector has a hardcoded "backdoor" code (2270), which authenticates to all devices.
Configurations

Configuration 1 (hide)

cpe:2.3:a:epson:easymp:2.86:*:*:*:*:*:*:*

History

21 Nov 2024, 03:10

Type Values Removed Values Added
References () https://rhinosecuritylabs.com/research/epson-easymp-remote-projection-vulnerabilities/ - Technical Description, Third Party Advisory () https://rhinosecuritylabs.com/research/epson-easymp-remote-projection-vulnerabilities/ - Technical Description, Third Party Advisory

Information

Published : 2017-10-10 13:29

Updated : 2024-11-21 03:10


NVD link : CVE-2017-12860

Mitre link : CVE-2017-12860

CVE.ORG link : CVE-2017-12860


JSON object : View

Products Affected

epson

  • easymp
CWE
CWE-798

Use of Hard-coded Credentials