Buffer Overflow vulnerability in EPSON L14150 FL27PB allows a remote attacker to execute arbitrary code via the RAW Printing Service (JetDirect) on TCP port 9100
Casky was already ahead
This CVE exploits attack patterns that Casky's 0matched skills already investigate — long before this vulnerability was disclosed. Claude's reasoning model maps these techniques to MITRE ATT&CK, so practitioners who ran these skills have already seen the threat behaviour in their findings.
CVE-2026-39047 is a buffer overflow vulnerability (CWE-121) in EPSON L14150 FL27PB printers that allows remote attackers to execute arbitrary code through the RAW Printing Service on TCP port 9100 (JetDirect). This vulnerability has a CVSS score of 7.5, indicating high severity. It affects organizations that deploy these EPSON printers in networked environments—particularly those in office settings, data centers, or managed print environments where the device is accessible over the network. Printers are frequently overlooked in security strategies, making them attractive pivot points for lateral movement and persistence once compromised.
While this specific CVE maps to CWE-121 and currently shows no active MITRE ATT&CK technique mappings, Casky's AI-driven skill engine would detect the attack patterns associated with exploitation attempts by identifying network reconnaissance on port 9100 (Service Enumeration), suspicious RAW print job submissions with oversized payloads (Exploitation), and post-execution indicators such as unexpected process creation or command execution on the printer or connected systems. Practitioners using Casky would see findings related to anomalous network traffic to printer services, malformed print requests that trigger memory violations, and potential command injection attempts—enabling detection before arbitrary code execution occurs. The extended reasoning capability would correlate these signals with printer vulnerability profiles and flag the L14150 FL27PB model as a high-risk asset requiring immediate patching or network isolation.
Composite risk scoring from EPSS, CISA KEV, Shodan, and GreyNoise — 21 security APIs correlated into a single Casky Risk Score. Coming in Casky Pro. Join early access →
Casky has 0 skills that investigate the attack patterns behind CVE-2026-39047. Run one and get CVSS-scored findings in 3 minutes.
Run the skill that detects this →© 2026 Casky.AI, Inc. · AI Security Investigation