On multiple products of SEIKO EPSON and FUJIFILM Corporation, the initial administrator password is easy to guess from the information available via SNMP. If the administrator password is not changed from the initial one, a remote attacker with SNMP access can log in to the product with the administrator privilege.
History

Thu, 07 Aug 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 07 Aug 2025 05:45:00 +0000

Type Values Removed Values Added
Description On multiple products of SEIKO EPSON and FUJIFILM Corporation, the initial administrator password is easy to guess from the information available via SNMP. If the administrator password is not changed from the initial one, a remote attacker with SNMP access can log in to the product with the administrator privilege.
Weaknesses CWE-1391
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2025-08-07T05:22:09.768Z

Updated: 2025-08-07T13:35:47.701Z

Reserved: 2025-07-17T05:11:00.940Z

Link: CVE-2025-35970

cve-icon Vulnrichment

Updated: 2025-08-07T13:35:43.701Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-08-07T06:15:42.447

Modified: 2025-08-07T21:26:37.453

Link: CVE-2025-35970

cve-icon Redhat

No data.