ZeroHour

CVE-2018-17313

PoC ×2
CVSS 3.0
6.1 medium
EPSS
2%p83
Published
()
Modified
Description

On the RICOH MP C307 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

Vendors
ricoh
Products
mp c307 firmware
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.