Vulnerability index

Browse CVEs

42 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Printer Driver Packager Nx HIGH 7.8
CVE-2023-30759

The driver installation package created by Printer Driver Packager NX v1.0.02 to v1.1.25 fails to detect its modification and may spawn an unexpected…

Fix: 1.1.26+
Fix from $1,950 2023-06-19
Mp C307 Firmware CRITICAL 9.1
CVE-2022-43969

Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials.

Fix: after 1.20
Fix from $2,300 2023-02-16
Device Software Manager HIGH 7.8
CVE-2022-36403

Untrusted search path vulnerability in the installer of Device Software Manager prior to Ver.2.20.3.0 allows an attacker to gain privileges via a Tro…

Fix: 2.20.3.0+
Fix from $1,950 2022-09-08
Sp 320dn Firmware CRITICAL 9.8
CVE-2021-33945

RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500SF, SP 221S, SP 220SNw, SP 221…

No fix yet
Fix from $2,300 2022-02-15
Streamline Nx Client Tool HIGH 7.8
CVE-2019-20001

An issue was discovered in RICOH Streamline NX Client Tool and RICOH Streamline NX PC Client that allows attackers to escalate local privileges.

Fix: after 3.3.2
Fix from $1,950 2020-08-04
Sp C250sf Firmware CRITICAL 9.8
CVE-2019-14299

Ricoh SP C250DN 1.05 devices have an Authentication Method Vulnerable to Brute Force Attacks. Some Ricoh printers did not implement account lockout. …

Mitigation only
Fix from $2,300 2020-03-13
Sp C250sf Firmware CRITICAL 9.8
CVE-2019-14310

Ricoh SP C250DN 1.05 devices allow denial of service (issue 2 of 3). Unauthenticated crafted packets to the IPP service will cause a vulnerable devic…

Mitigation only
Fix from $2,300 2020-03-13
Sp C250sf Firmware HIGH 7.5
CVE-2019-14303

Ricoh SP C250DN 1.05 devices allow denial of service (issue 1 of 3). Some Ricoh printers were affected by a wrong LPD service implementation that lea…

No fix yet
Fix from $1,950 2020-03-13
Sp C250sf Firmware HIGH 7.5
CVE-2019-14309

Ricoh SP C250DN 1.05 devices have a fixed password. FTP service credential were found to be hardcoded within the printer firmware. This would allow t…

Mitigation only
Fix from $1,950 2020-03-13
Generic Pcl5 Driver HIGH 7.8
CVE-2019-19363

An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation.…

Fix: 4.26+
Fix from $1,950 2020-01-24
Sp C250sf Firmware HIGH 8.8
CVE-2019-14304

Ricoh SP C250DN 1.06 devices allow CSRF.

Fix: 1.02 / 1.09+
Fix from $1,950 2020-01-10
Sp C250sf Firmware HIGH 7.5
CVE-2019-14301

Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 1 of 2).

Fix: 1.02 / 1.09+
Fix from $1,950 2020-01-10
Sp C250sf Firmware HIGH 7.5
CVE-2019-14306

Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 2 of 2).

Fix: 1.07 / 1.09+
Fix from $1,950 2020-01-10
Sp C250sf Firmware MEDIUM 6.8
CVE-2019-14302

On Ricoh SP C250DN 1.06 devices, a debug port can be used.

Fix: 1.07 / 1.09+
Fix from $1,600 2020-01-10
Fusionpro Vdp HIGH 7.5
CVE-2019-7751EPSS 14%

A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPr…

Fix: 10.0+
Fix from $1,950 2019-12-31
Limedio MEDIUM 6.1
CVE-2019-6021

Open redirect vulnerability in Library Information Management System LIMEDIO all versions allows remote attackers to redirect users to arbitrary web …

Mitigation only
Fix from $1,600 2019-12-26
Mp 501 Firmware MEDIUM 6.1
CVE-2019-18203

On the RICOH MP 501 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn a…

No fix yet
Fix from $1,600 2019-10-21
Sp C250sf Firmware CRITICAL 9.8
CVE-2019-14300

Several Ricoh printers have multiple buffer overflows parsing HTTP cookie headers, which allow an attacker to cause a denial of service or code execu…

Fix: 1.07 / 1.13+
Fix from $2,300 2019-08-26
Sp C250sf Firmware CRITICAL 9.8
CVE-2019-14305

Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for Wi-Fi, mDNS, POP3, SMTP, and notification alerts, which all…

Fix: 1.07 / 1.13+
Fix from $2,300 2019-08-26
Sp C250sf Firmware CRITICAL 9.8
CVE-2019-14307

Several Ricoh printers have multiple buffer overflows parsing HTTP parameter settings for SNMP, which allow an attacker to cause a denial of service …

Fix: 1.07 / 1.13+
Fix from $2,300 2019-08-26
Sp C250sf Firmware CRITICAL 9.8
CVE-2019-14308

Several Ricoh printers have multiple buffer overflows parsing LPD packets, which allow an attacker to cause a denial of service or code execution via…

Fix: 1.07 / 1.13+
Fix from $2,300 2019-08-26
Sp 4520dn Firmware MEDIUM 6.1
CVE-2019-11844

An HTML Injection vulnerability has been discovered on the RICOH SP 4520DN via the /web/entry/en/address/adrsSetUserWizard.cgi entryNameIn or entryDi…

No fix yet
Fix from $1,600 2019-05-14
Sp 4510dn Firmware MEDIUM 6.1
CVE-2019-11845

An HTML Injection vulnerability has been discovered on the RICOH SP 4510DN via the /web/entry/en/address/adrsSetUserWizard.cgi entryNameIn parameter.

No fix yet
Fix from $1,600 2019-05-14
D2200 Firmware CRITICAL 9.8
CVE-2018-16184

RICOH Interactive Whiteboard D2200 V1.6 to V2.2, D5500 V1.6 to V2.2, D5510 V1.6 to V2.2, and the display versions with RICOH Interactive Whiteboard C…

Fix: after 2.2
Fix from $2,300 2019-01-09
D2200 Firmware CRITICAL 9.8
CVE-2018-16188

SQL injection vulnerability in the RICOH Interactive Whiteboard D2200 V1.3 to V2.2, D5500 V1.3 to V2.2, D5510 V1.3 to V2.2, the display versions with…

Fix: after 3.1.10137.0
Fix from $2,300 2019-01-09
D2200 Firmware HIGH 8.8
CVE-2018-16186

RICOH Interactive Whiteboard D2200 V1.1 to V2.2, D5500 V1.1 to V2.2, D5510 V1.1 to V2.2, the display versions with RICOH Interactive Whiteboard Contr…

Fix: after 3.1.10137.0
Fix from $1,950 2019-01-09
D2200 Firmware HIGH 7.8
CVE-2018-16185

RICOH Interactive Whiteboard D2200 V1.1 to V2.2, D5500 V1.1 to V2.2, D5510 V1.1 to V2.2, the display versions with RICOH Interactive Whiteboard Contr…

Fix: after 3.1.10137.0
Fix from $1,950 2019-01-09
D2200 Firmware MEDIUM 5.9
CVE-2018-16187

The RICOH Interactive Whiteboard D2200 V1.3 to V2.2, D5500 V1.3 to V2.2, D5510 V1.3 to V2.2, the display versions with RICOH Interactive Whiteboard C…

Fix: after 3.1.10137.0
Fix from $1,600 2019-01-09
Myprint CRITICAL 9.8
CVE-2018-18006EPSS 21%

Hardcoded credentials in the Ricoh myPrint application 2.9.2.4 for Windows and 2.2.7 for Android give access to any externally disclosed myPrint WSDL…

No fix yet
Fix from $2,300 2018-12-14
Mp C2003sp Firmware MEDIUM 6.1
CVE-2018-17315

On the RICOH MP C2003 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn…

No fix yet
Fix from $1,600 2018-09-26