Vulnerability Details CVE-2026-23767
ESC/POS, a printer control language designed by Seiko Epson Corporation, lacks mechanisms for user authentication and command authorization, does not provide controls to restrict sources or destinations of network communication, and transmits commands without encryption or integrity protection.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 9.9%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2026-23767
-
-
cpe:2.3:h:epson:tm-h6000v:-
-
cpe:2.3:h:epson:tm-l100:-
-
-
-
cpe:2.3:h:epson:tm-m30ii-h:-
-
cpe:2.3:h:epson:tm-m30ii-s:-
-
cpe:2.3:h:epson:tm-m30ii-sl:-
-
cpe:2.3:h:epson:tm-m30ii:-
-
cpe:2.3:h:epson:tm-m30iii-h:-
-
cpe:2.3:h:epson:tm-m30iii:-
-
-
-
cpe:2.3:h:epson:tm-p20ii:-
-
cpe:2.3:h:epson:tm-p60ii:-
-
-
cpe:2.3:h:epson:tm-p80ii:-
-
cpe:2.3:h:epson:tm-t20ii:-
-
cpe:2.3:h:epson:tm-t20iii:-
-
cpe:2.3:h:epson:tm-t88vi-ihub:-
-
cpe:2.3:h:epson:tm-t88vi:-
-
cpe:2.3:h:epson:tm-t88vii:-
-
-
-
cpe:2.3:o:epson:sb-h50_firmware:-
-
cpe:2.3:o:epson:tm-h6000v_firmware:-
-
cpe:2.3:o:epson:tm-l100_firmware:-
-
cpe:2.3:o:epson:tm-m10_firmware:-
-
cpe:2.3:o:epson:tm-m30_firmware:-
-
cpe:2.3:o:epson:tm-m30ii-h_firmware:-
-
cpe:2.3:o:epson:tm-m30ii-s_firmware:-
-
cpe:2.3:o:epson:tm-m30ii-sl_firmware:-
-
cpe:2.3:o:epson:tm-m30ii_firmware:-
-
cpe:2.3:o:epson:tm-m30iii-h_firmware:-
-
cpe:2.3:o:epson:tm-m30iii_firmware:-
-
cpe:2.3:o:epson:tm-m55_firmware:-
-
cpe:2.3:o:epson:tm-p20_firmware:-
-
cpe:2.3:o:epson:tm-p20ii_firmware:-
-
cpe:2.3:o:epson:tm-p60ii_firmware:-
-
cpe:2.3:o:epson:tm-p80_firmware:-
-
cpe:2.3:o:epson:tm-p80ii_firmware:-
-
cpe:2.3:o:epson:tm-t20ii_firmware:-
-
cpe:2.3:o:epson:tm-t20iii_firmware:-
-
cpe:2.3:o:epson:tm-t88vi-ihub_firmware:-
-
cpe:2.3:o:epson:tm-t88vi_firmware:-
-
cpe:2.3:o:epson:tm-t88vii_firmware:-
-
cpe:2.3:o:epson:ub-e04_firmware:-
-
cpe:2.3:o:epson:ub-r04_firmware:-