U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2020-5674

Change History

Initial Analysis by NIST 12/09/2020 2:10:11 PM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:a:epson:print_image_framer_tool:-:*:*:*:*:*:*:*
     OR
          cpe:2.3:o:microsoft:windows_98:-:*:*:*:*:*:*:*
          cpe:2.3:o:microsoft:windows_me:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:a:epson:status_monitor_2:-:*:*:*:*:*:*:*
          *cpe:2.3:a:epson:status_monitor_3:-:*:*:*:*:*:*:*
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:a:epson:universal_print_driver:-:*:*:*:*:*:*:*
     OR
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:x64:*
          cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:x86:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:o:epson:ec-01_firmware:-:*:*:*:*:*:*:*
     OR
          cpe:2.3:h:epson:ec-01:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
OR
     *cpe:2.3:a:epson:album_print:-:*:*:*:*:update_program:*:*
     *cpe:2.3:a:epson:color_calibration_utility:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:colorbase:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:colorio_easy_print:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:connect:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:creativity_suite:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:e-photo:-:*:*:*:*:camera_raw:*:*
     *cpe:2.3:a:epson:e-photo:-:*:*:*:*:picture_motion_browser:*:*
     *cpe:2.3:a:epson:easy_photo_print:-:*:*:*:*:-:*:*
     *cpe:2.3:a:epson:easy_photo_print:-:*:*:*:*:camera_raw:*:*
     *cpe:2.3:a:epson:easy_settings:-:*:*:*:*:office:*:*
     *cpe:2.3:a:epson:imaging_workshop:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:link2:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:multi-print_quicker:-:*:*:*:*:windows:*:*
     *cpe:2.3:a:epson:net_config:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:net_config_se:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:net_print:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:net_software_development_kit:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:photolier:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:photoquicker:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:photostarter:3.1:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:pm-t990_integrated_installer:-:*:*:*:*:windows:*:*
     *cpe:2.3:a:epson:print:-:*:*:*:*:playmemories_home:*:*
     *cpe:2.3:a:epson:print:-:*:*:*:*:silkypix:*:*
     *cpe:2.3:a:epson:print:-:*:*:*:*:viewnx:*:*
     *cpe:2.3:a:epson:print_image_framer_tool:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:print_layout:-:*:*:*:*:photoshop:*:*
     *cpe:2.3:a:epson:prolab_print:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:prolab_print:-:*:*:*:*:camera_raw:*:*
     *cpe:2.3:a:epson:remote_printer_driver:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:scan_icm_updater:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:scanner_driver:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:web_to_page:-:*:*:*:*:*:*:*
     *cpe:2.3:a:epson:webconfig:-:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
NIST (AV:L/AC:M/Au:N/C:P/I:P/A:P)
Added CVSS V2 Metadata

								
							
							
						
Victim must voluntarily interact with attack mechanism
Added CVSS V3.1

								
							
							
						
NIST AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Added CWE

								
							
							
						
NIST CWE-426
Changed Reference Type
https://jvn.jp/en/jp/JVN26835001/index.html No Types Assigned
https://jvn.jp/en/jp/JVN26835001/index.html Third Party Advisory
Changed Reference Type
https://www.epson.jp/support/misc_t/201119_oshirase.htm No Types Assigned
https://www.epson.jp/support/misc_t/201119_oshirase.htm Vendor Advisory
Changed Reference Type
https://www.epson.jp/support/pdf/fy20-001_softwareList_20201106_b.pdf No Types Assigned
https://www.epson.jp/support/pdf/fy20-001_softwareList_20201106_b.pdf Vendor Advisory