nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2017-12860 CVE-2017-12860
CRITICAL
Record summary
CVE-2017-12860 has a selected CVSS score of 9.8 (critical); EIP currently links 1 curated repository PoC.
Description
The Epson "EasyMP" software is designed to remotely stream a users computer to supporting projectors.These devices are authenticated using a unique 4-digit code, displayed on-screen - ensuring only those who can view it are streaming.In addition to the password, each projector has a hardcoded "backdoor" code (2270), which authenticates to all devices.
Description source: CVE List
Exploitation context
Available material
- Curated repository PoCs
- 1
Proofs of concept
1Curated repository PoCs
GitHubCVE-2017-12860Curated repository PoCby RhinoSecurityLabsStars: 905Not analyzed2 files
References
2rhinosecuritylabs.com
https://rhinosecuritylabs.com/research/epson-easymp-remote-projection-vulnerabilities