ZeroHour

CVE-2018-17002

PoC
CVSS 3.0
6.1 medium
EPSS
1%p61
Published
()
Modified
Description

On the RICOH MP 2001 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

Vendors
ricoh
Products
mp 2001sp firmware
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.