ZeroHour

CVE-2018-17312

PoC
CVSS 3.0
6.1 medium
EPSS
1%p61
Published
()
Modified
Description

On the RICOH Aficio MP 301 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

Vendors
ricoh
Products
aficio mp 301spf firmware
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.