CVE-2025-35970 PUBLISHED

Assigner: jpcert
Reserved: 17.07.2025 Published: 07.08.2025 Updated: 07.08.2025

On multiple products of SEIKO EPSON and FUJIFILM Corporation, the initial administrator password is easy to guess from the information available via SNMP. If the administrator password is not changed from the initial one, a remote attacker with SNMP access can log in to the product with the administrator privilege.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
CVSS Score: 8.7

Product Status

Vendor SEIKO EPSON
Product Multiple EPSON product
Versions
  • Version see the information provided by the vendor is affected
Vendor FUJIFILM Corporation
Product FRONTIER DX400W
Versions
  • Version all versions is affected

References

Problem Types