CVE-2026-39047

HIGH

EPSON L14150 FL27PB - Buffer Overflow via RAW Printing Service on TCP Port 9100

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 3 public exploits for CVE-2026-39047. PoCs published by AzhariRamadhan, J4ck3LSyN-Gen2, fearlessresponsesolution.

AI-analyzed exploit summary PrintHack is a Python-based tool that exploits printer spooling vulnerabilities via Port 9100, enabling various attack vectors such as DoS, data exfiltration, and phishing QR code generation. It demonstrates the ability to send raw payloads, PCL commands, and large data volumes to printers for security testing.

Description

Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary code via the RAW Printing Service (JetDirect) on TCP port 9100

Exploits (3)

github WORKING POC 1 stars
by AzhariRamadhan · pythonpoc
https://github.com/AzhariRamadhan/CVE-2026-39047

PrintHack is a Python-based tool that exploits printer spooling vulnerabilities via Port 9100, enabling various attack vectors such as DoS, data exfiltration, and phishing QR code generation. It demonstrates the ability to send raw payloads, PCL commands, and large data volumes to printers for security testing.

Classification
Working Poc 95%
Attack Type
Dos | Info Leak | Other
Complexity
Moderate
Reliability
Reliable
Target: Network printers with raw printing enabled (Port 9100)
No auth needed
Prerequisites: Network access to printer on Port 9100 · Python 3.6+ with Pillow, qrcode, and requests libraries
mistral-large-3 · analyzed May 21, 2026 Full analysis →
github WORKING POC
by J4ck3LSyN-Gen2 · pythonpoc
https://github.com/J4ck3LSyN-Gen2/CVE-2026-39047

This repository provides a functional proof-of-concept exploit for CVE-2026-39047, a remote buffer overflow vulnerability in Epson printer firmware (notably L14150 FL27PB) via the RAW TCP printing protocol (port 9100). The PoC includes transport framing, payload obfuscation, fuzzing techniques, and staged post-exploitation simulation for RCE.

Classification
Working Poc 98%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Epson L14150 printer firmware (FL27PB and similar models)
No auth needed
Prerequisites: Network access to the target printer on TCP port 9100 · Python 3.8+ environment for execution
mistral-large-3 · analyzed Jul 05, 2026 Full analysis →
github WORKING POC
by fearlessresponsesolution · tsqlpoc
https://github.com/fearlessresponsesolution/cve-pocs/tree/master/pocs/CVE-2026-39047

The repository contains a functional Python tool for exploiting printer vulnerabilities via raw spooling (Port 9100), including DoS, data exfiltration, and phishing capabilities. It demonstrates CVE-2026-39047 by sending crafted payloads to printers.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Network printers with raw spooling enabled (Port 9100)
No auth needed
Prerequisites: Network access to printer on Port 9100 · Python 3.6+ with dependencies (Pillow, qrcode, requests)
mistral-large-3 · analyzed May 21, 2026 Full analysis →

Scores

CVSS v3 7.5
EPSS 0.0065
EPSS Percentile 47.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-121
Status published
Published May 20, 2026
Tracked Since May 20, 2026