Epson's vulnerability profile spans a large portfolio of office equipment, printers, and peripherals, though the volume of disclosures remains modest relative to the device footprint in deployment. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, concentrating in widely deployed multifunction devices such as the WorkForce series and associated firmware, as well as enterprise server components like the TSE Server. The exposure recurs through web-interface and authentication-oriented weakness classes including cross-site scripting, missing authentication for critical functions, cross-site request forgery, and improper authentication, reflecting the embedded web-service attack surface of networked office equipment. Defenders should prioritize firmware updates for internet-accessible or network-adjacent devices and restrict administrative access to web interfaces; current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Epson over time
Signals from CVEs in this vendor scope (31 CVEs).
31 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-5550MEDIUM Versions of Epson AirPrint released prior to January 19, 2018 contain a reflective cross-site scripting (XSS) vulnerability, which can allow untrusted users on the network to hijac | Feb 8, 2018 | 6.1 | 39 | NO | NO |
CVE-2017-12861CRITICAL The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-scree | Oct 10, 2017 | 9.8 | 33 | NO | NO |
CVE-2017-12860CRITICAL The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-scree | Oct 10, 2017 | 9.8 | 32 | NO | NO |
CVE-2017-6443MEDIUM Cross-site scripting (XSS) vulnerability in EPSON TMNet WebConfig 1.00 allows remote attackers to inject arbitrary web script or HTML via the W_AD1 parameter to Forms/oadmin_1. | Mar 15, 2017 | 6.1 | 32 | NO | YES |
CVE-2026-23767CRITICAL ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization, does not provide controls to restrict s | Mar 5, 2026 | 9.8 | 31 | NO | NO |
CVE-2020-6091CRITICAL An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 MAIN2: 8X7325WWV303. A specially crafted | May 22, 2020 | 9.1 | 30 | NO | NO |
CVE-2022-36133CRITICAL The WebConfig functionality of Epson TM-C3500 and TM-C7500 devices with firmware version WAM31500 allows authentication bypass. | Nov 25, 2022 | 9.1 | 29 | NO | NO |
CVE-2020-28929CRITICAL Unrestricted access to the log downloader functionality in EPSON EPS TSE Server 8 (21.0.11) allows an unauthenticated attacker to remotely retrieve administrative hashed credential | Dec 16, 2020 | 9.8 | 28 | NO | NO |
CVE-2020-12695HIGH The Open Connectivity Foundation UPnP specification before 2020-04-17 does not forbid the acceptance of a subscription request with a delivery URL on a different network segment th | Jun 8, 2020 | 7.5 | 28 | NO | NO |
CVE-2018-19248CRITICAL The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to upload a firmware file and | Dec 24, 2018 | 9.1 | 28 | NO | NO |
Signals from CVEs in this vendor scope (31 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Epson.
Media articles that mention a CVE ID that affects a product developed by Epson — matched by CVE ID, not by vendor name.