ZeroHour

CVE-2018-17309

PoC
CVSS 3.0
6.1 medium
EPSS
1%p61
Published
()
Modified
Description

On the RICOH MP C406Z printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

Vendors
ricoh
Products
mp c406zspf firmware
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.