PT-2026-5110 · Epson · Epson

Published

2026-01-28

·

Updated

2026-01-28

·

CVE-2020-36984

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions EPSON version 1.124
Description EPSON 1.124 contains an unquoted service path vulnerability in the SENADB service. This allows local attackers to execute code with elevated system privileges. The vulnerability exists due to an unquoted path in C:Program Files (x86)EPSON P2BPrinter SoftwareStatus Monitor. Attackers can inject malicious executables into this directory, which will then run with LocalSystem permissions.
Recommendations Ensure the service path for SENADB is enclosed in quotes.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2020-36984

Affected Products

Epson