ZeroHour

CVE-2023-30759

CVSS 3.1
7.8 high
EPSS
<1%p4
Published
()
Modified
Description

The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modification and may spawn an unexpected process with the administrative privilege. If a non-administrative user modifies the driver installation package and runs it on the target PC, an arbitrary program may be executed with the administrative privilege.

Vendors
ricoh
Products
printer driver packager nx
Weakness
CWE-345, CWE-352
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.