CVE-2018-18960

MEDIUM

Epson WorkForce WF-2861 Firmware <=10.52 Uncontrolled Resource Consumption via SNMP

Title source: llm
STIX 2.1

Description

An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA devices. They use SNMP to find certain devices on the network, but the default version is v2c, allowing an amplification attack.

References (1)

Core 1

Scores

CVSS v3 5.9
EPSS 0.0091
EPSS Percentile 55.6%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-400
Status published
Products (3)
epson/epson_workforce_wf-2861_firmware 10.48_lq22i3
epson/epson_workforce_wf-2861_firmware 10.51.lq20i6
epson/epson_workforce_wf-2861_firmware 10.52.lq17ia
Published Dec 24, 2018
Tracked Since Feb 18, 2026