EPSON Network Utility 4.10 uses weak permissions (Everyone: Full Control) for eEBSVC.exe, which allows local users to gain privileges via a Trojan horse file.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/672500 | third party advisory us government resource |
https://www.epson.com/cgi-bin/Store/support/supAdvice.jsp?type=highlights¬eoid=288045 | patch |