CVE-2021-47898: Epson USB Display 1.6.0.0 Unquoted Service Path Vulnerability
Epson USB Display 1.6.0.0 contains an unquoted service path vulnerability in the EMPUDSA service running with LocalSystem privileges. Attackers can exploit the unquoted path by placing malicious executables in intermediate directories to gain elevated system access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-47898?
CVE-2021-47898 is classified as a high-severity vulnerability due to its potential for local privilege escalation.
How do I fix CVE-2021-47898?
To fix CVE-2021-47898, ensure that the service path for Epson USB Display is quoted correctly in the service configuration.
What does CVE-2021-47898 affect?
CVE-2021-47898 affects Epson USB Display version 1.6.0.0 that runs the EMP_UDSA service.
How can attackers exploit CVE-2021-47898?
Attackers can exploit CVE-2021-47898 by placing malicious executables in directories listed in the unquoted service path.
What are the implications of CVE-2021-47898?
The implications of CVE-2021-47898 include unauthorized execution of code with LocalSystem privileges, potentially leading to complete system compromise.