PT-2019-15272 · Ricoh · Ricoh Mp 501

Publicado

2019-10-21

·

Atualizado

2019-10-24

·

CVE-2019-18203

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions RICOH MP 501 printer (affected versions not specified)
Description A security issue has been found in the RICOH MP 501 printer, specifically in the process of adding addresses. This issue involves HTML Injection and Stored XSS vulnerabilities. The vulnerabilities are related to the entryNameIn and KeyDisplay parameters when accessing the /web/entry/en/address/adrsSetUserWizard.cgi API endpoint.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-18203

Produtos afetados

Ricoh Mp 501