Vulnerability Description
EPSON Network Utility 4.10 uses weak permissions (Everyone: Full Control) for eEBSVC.exe, which allows local users to gain privileges via a Trojan horse file.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Epson | Network Utility | 4.10 |
Related Weaknesses (CWE)
References
- http://www.kb.cert.org/vuls/id/672500Third Party AdvisoryUS Government Resource
- https://www.epson.com/cgi-bin/Store/support/supAdvice.jsp?type=highlights¬eoiPatch
- http://www.kb.cert.org/vuls/id/672500Third Party AdvisoryUS Government Resource
- https://www.epson.com/cgi-bin/Store/support/supAdvice.jsp?type=highlights¬eoiPatch
FAQ
What is CVE-2015-6034?
CVE-2015-6034 is a vulnerability with a CVSS score of 6.9 (MEDIUM). EPSON Network Utility 4.10 uses weak permissions (Everyone: Full Control) for eEBSVC.exe, which allows local users to gain privileges via a Trojan horse file.
How severe is CVE-2015-6034?
CVE-2015-6034 has been rated MEDIUM with a CVSS base score of 6.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-6034?
Check the references section above for vendor advisories and patch information. Affected products include: Epson Network Utility.