PT-2026-7924 · Ricoh · Ricoh Web Image Monitor
Ismail Tasdelen
·
Publicado
2026-02-12
·
Atualizado
2026-02-12
·
CVE-2019-25324
CVSS v3.1
6.1
Média
| Vetor | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
RICOH Web Image Monitor version 1.09
Description
RICOH Web Image Monitor 1.09 contains an HTML injection issue in the address configuration CGI script. This allows attackers to inject malicious HTML code by exploiting the
entryNameIn and entryDisplayNameIn parameters. Successful exploitation could lead to cross-site scripting attacks. The vulnerable parameters allow the insertion of arbitrary HTML content.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ricoh Web Image Monitor