vendor:
RICOH Printer
by:
Ismail Tasdelen
N/A
CVSS
N/A
Code Injection
CWE
Product Name: RICOH Printer
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2018
RICOH MP 305+ Printer โ Cross-Site Scripting
On the RICOH Aficio MP 305+ printer and other affected models, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.
Mitigation:
Unknown