// For flags

CVE-2010-3920

 

Severity Score

4.6
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Seiko Epson printer driver installers for LP-S9000 before 4.1.11 and LP-S7100 before 4.1.7, or as downloaded from the vendor between May 2010 and 20101125, set weak permissions for the "C:\Program Files" folder, which might allow local users to bypass intended access restrictions and create or modify arbitrary files and directories.

El instalador de drivers de impresora Seiko Epson para LP-S9000 anterior a v4.1.11 y LP-S7100 anterior a v4.1.7, o los descargados del proveedor entre mayo de 2010 y el 25 del noviembre de 2010, modifica los permisos de acceso de la carpeta "C:\Program Files" (C:\Archivos de programa) lo cual puede permitir a los usuarios locales evitar las restricciones de acceso y crear o modificar archivos y direcctorios a su elección.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-10-12 CVE Reserved
  • 2010-12-08 CVE Published
  • 2023-03-08 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-264: Permissions, Privileges, and Access Controls
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Epson
Search vendor "Epson"
Lp-s7100 Driver 4.1.0
Search vendor "Epson" for product "Lp-s7100 Driver 4.1.0"
*-
Affected
in Epson
Search vendor "Epson"
Lp-s7100
Search vendor "Epson" for product "Lp-s7100"
*-
Safe
Epson
Search vendor "Epson"
Lp-s7100 Driver 4.1.7
Search vendor "Epson" for product "Lp-s7100 Driver 4.1.7"
*-
Affected
in Epson
Search vendor "Epson"
Lp-s7100
Search vendor "Epson" for product "Lp-s7100"
*-
Safe
Epson
Search vendor "Epson"
Lp-s9000 Driver 4.1.0
Search vendor "Epson" for product "Lp-s9000 Driver 4.1.0"
*-
Affected
in Epson
Search vendor "Epson"
Lp-s9000
Search vendor "Epson" for product "Lp-s9000"
*-
Safe
Epson
Search vendor "Epson"
Lp-s9000 Driver 4.1.11
Search vendor "Epson" for product "Lp-s9000 Driver 4.1.11"
*-
Affected
in Epson
Search vendor "Epson"
Lp-s9000
Search vendor "Epson" for product "Lp-s9000"
*-
Safe