Ricoh
ricoh
43 CVEs • 384 products
Products (384)
Click to collapseToggle
Products (384)
Click to collapse
CVEs (43)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modification and may spawn an unexpected process with the administrative privilege. If a non-administrative use...Show more |
1Ricoh 77Im 2500 Firmware Im 2702 FirmwareIm 3000 Firmware+74 moreMar 19, 2025 Feb 16, 2023 N/A· v4 9.1 CRITICAL· v3 N/A· v2 Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials. |
Cross-site scripting vulnerability in Aficio SP 4210N firmware versions prior to Web Support 1.05 allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script. |
Untrusted search path vulnerability in the installer of Device Software Manager prior to Ver.2.20.3.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. |
1Ricoh 66Aficio Sp 3500sf Firmware M 2700 FirmwareM 2701 Firmware+63 moreNov 21, 2024 Feb 15, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500SF, SP 221S, SP 220SNw, SP 221SNw, SP 221SF, SP 220SFNw, SP 221SFNw v1.06 were discovered to contain...Show more |
1Ricoh 2Streamline Nx Client Tool Streamline Nx Pc ClientNov 21, 2024 Aug 4, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 An issue was discovered in RICOH Streamline NX Client Tool and RICOH Streamline NX PC Client that allows attackers to escalate local privileges. |
1Ricoh 4Sp C250dn Firmware Sp C250sf FirmwareSp C252dn Firmware+1 moreNov 21, 2024 Mar 13, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Ricoh SP C250DN 1.05 devices allow denial of service (issue 2 of 3). Unauthenticated crafted packets to the IPP service will cause a vulnerable device to crash. A memory corruption has been identified in the way of how t...Show more |
1Ricoh 4Sp C250dn Firmware Sp C250sf FirmwareSp C252dn Firmware+1 moreNov 21, 2024 Mar 13, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Ricoh SP C250DN 1.05 devices have a fixed password. FTP service credential were found to be hardcoded within the printer firmware. This would allow to an attacker to access and read information stored on the shared FTP f...Show more |
1Ricoh 4Sp C250dn Firmware Sp C250sf FirmwareSp C252dn Firmware+1 moreNov 21, 2024 Mar 13, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Ricoh SP C250DN 1.05 devices allow denial of service (issue 1 of 3). Some Ricoh printers were affected by a wrong LPD service implementation that lead to a denial of service vulnerability. |
1Ricoh 4Sp C250dn Firmware Sp C250sf FirmwareSp C252dn Firmware+1 moreNov 21, 2024 Mar 13, 2020 N/A· v4 9.8 CRITICAL· v3 5.0 MEDIUM· v2 Ricoh SP C250DN 1.05 devices have an Authentication Method Vulnerable to Brute Force Attacks. Some Ricoh printers did not implement account lockout. Therefore, it was possible to obtain the local account credentials by b...Show more |
1Ricoh 8Generic Pcl5 Driver Pc Fax Generic DriverPcl6 (pcl Xl) Driver+5 moreNov 21, 2024 Jan 24, 2020 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver for Universal Print - V...Show more |
1Ricoh 48M 2700 Firmware M 2701 FirmwareMp 2014 Firmware+45 moreNov 21, 2024 Jan 10, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 2 of 2). |
1Ricoh 52M 2700 Firmware M 2701 FirmwareM C250fw Firmware+49 moreNov 21, 2024 Jan 10, 2020 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Ricoh SP C250DN 1.06 devices allow CSRF. |
1Ricoh 61M 2700 Firmware M 2701 FirmwareMp 2014 Firmware+58 moreNov 21, 2024 Jan 10, 2020 N/A· v4 6.8 MEDIUM· v3 7.2 HIGH· v2 On Ricoh SP C250DN 1.06 devices, a debug port can be used. |
1Ricoh 52M 2700 Firmware M 2701 FirmwareM C250fw Firmware+49 moreNov 21, 2024 Jan 10, 2020 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 1 of 2). |
A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPro VDP before 10.0 allows a remote attacker to list or enumerate sensiti...Show more |
Open redirect vulnerability in Library Information Management System LIMEDIO all versions allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a specially crafted URL. |
On the RICOH MP 501 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn and KeyDisplay parameter to /web/entry/en/address/adrsSetUserWizard.cgi. |
1Ricoh 4Sp C250dn Firmware Sp C250sf FirmwareSp C252dn Firmware+1 moreNov 21, 2024 Aug 26, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for SNMP, which allow an attacker to cause a denial of service or code execution via crafted requests to the web server. Affected firm...Show more |
1Ricoh 4Sp C250dn Firmware Sp C250sf FirmwareSp C252dn Firmware+1 moreNov 21, 2024 Aug 26, 2019 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for Wi-Fi, mDNS, POP3, SMTP, and notification alerts, which allow an attacker to cause a denial of service or code execution via craft...Show more |