Exploitation Summary
EIP tracks 1 public exploit for CVE-2021-47898. PoCs published by Hector Gerbacio.
AI-analyzed exploit summary This is a writeup detailing an unquoted service path vulnerability in Epson USB Display 1.6.0.0. The vulnerability allows for potential local privilege escalation due to the service path containing spaces and not being enclosed in quotes.
Description
Epson USB Display 1.6.0.0 contains an unquoted service path vulnerability in the EMP_UDSA service running with LocalSystem privileges. Attackers can exploit the unquoted path by placing malicious executables in intermediate directories to gain elevated system access.
Exploits (1)
This is a writeup detailing an unquoted service path vulnerability in Epson USB Display 1.6.0.0. The vulnerability allows for potential local privilege escalation due to the service path containing spaces and not being enclosed in quotes.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H