Executive brief
Multiple SEIKO EPSON printers and scanners contain outdated, revoked root certificates in their firmware. An attacker positioned on the network can impersonate a legitimate server during communications, trick the device into trusting forged certificates, and intercept and decrypt subsequent data transmissions from the affected printer or scanner. This could expose sensitive information such as scan data, configuration details, or print job contents to unauthorized parties.
Technical details
This vulnerability (CWE-296: Cryptographic Issues – Incorrect Trust in Root Certificates) arises from the retention of already-revoked root certificates in the device firmware. When the affected printer or scanner establishes SSL/TLS connections, it may trust certificates signed by these revoked roots. An attacker on the network can perform a man-in-the-middle (MITM) attack, intercept network traffic, present a forged certificate signed by a revoked root that the device still trusts, and establish a secure channel with the device. The device will then send subsequent communications through this compromised channel, allowing traffic inspection and decryption. The attack requires network adjacency (AV:N) but no authentication or user interaction (PR:N, UI:N). Patches are available through updated root certificate files distributed via the device's web configuration interface.
Affected products
- SEIKO EPSON Inkjet Printers and Scanners Multiple models including EP-10VA, EP-306, EP-30VA, EP-315, EP-50V, EP-708A–EP-717A, EP-807AB–EP-817A, EP-879AB–EP-886AW, EP-887AB–EP-887AW, EP-978A3–EP-988A3, EP-M476T, EP-M570T, EW-052A–EW-M970A3T, LM-C400–LX-10050MF, PF-71, PF-81, PX-047A–PX-S890X, SC-PX1V–SC-PX1VL, DS-1760WN–DS-900WN, DS-C420W–FF-680W
- SEIKO EPSON Laser Printers LP-S2290, LP-S3290, LP-S3290PS, LP-S3590, LP-S3590PS, LP-S3590Z, LP-S4290, LP-S4290PS, LP-S7180, LP-S7180Z, LP-M8180A, LP-M818AZ3, LP-M8180F, LP-M818FZ3, LP-M8180PS, LP-S8180, LP-S8180PS
- SEIKO EPSON Wide-Format Printers SC-F150, SC-F550, SC-F551, SC-P6550E, SC-P6550D, SC-P6550DE, SC-P8550D, SC-P8550DL, SC-P8550DM, SC-T2150, SC-T3150, SC-T3150N, SC-T3150M, SC-T3150X, SC-T3450, SC-T3450N, SC-T3455, SC-T3455N, SC-T3750D, SC-T3750DE, SC-T3750E, SC-T5150, SC-T5150M, SC-T5150N, SC-T5450, SC-T5450M, SC-T5455, SC-T5750D, SC-T5750DM, SC-T7750D, SC-T7750DM, SC-T7750DL
Timeline
- 2026-08-20: disclosed
- 2026-08-28: other: Advisory updated with remediation details