Skip to content

Latest commit

 

History

History
15 lines (12 loc) · 623 Bytes

README.md

File metadata and controls

15 lines (12 loc) · 623 Bytes

CVE-2017-12861: Epson EasyMP Projector Bruteforce PIN

Information

Description: This allows access to the projector via bruteforcing a 4-digit PIN.
Versions Affected: EasyMP 2.86
Researcher: Rhino Security Team (https://twitter.com/RhinoSecurity)
Disclosure Link: https://rhinosecuritylabs.com/internet-of-things/epson-easymp-remote-projection-vulnerabilities/
NIST CVE Link: https://nvd.nist.gov/vuln/detail/CVE-2017-12861

Proof-of-Concept Exploit

Description

The 4-digit PIN has no lockout mechanism and can be bruteforced.

Usage/Exploitation

python CVE-2017-12861.py