ZeroHour

CVE-2019-14299

CVSS 3.1
9.8 critical
EPSS
1%p71
Published
()
Modified
Description

Ricoh SP C250DN 1.05 devices have an Authentication Method Vulnerable to Brute Force Attacks. Some Ricoh printers did not implement account lockout. Therefore, it was possible to obtain the local account credentials by brute force.

Vendors
ricoh
Products
sp c250sf firmware, sp c252sf firmware, sp c250dn firmware, sp c252dn firmware
Weakness
CWE-307
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.