CVE-2018-16188: SQL Injection
SQL injection vulnerability in the RICOH Interactive Whiteboard D2200 V1.3 to V2.2, D5500 V1.3 to V2.2, D5510 V1.3 to V2.2, the display versions with RICOH Interactive Whiteboard Controller Type1 V1.3 to V2.2 attached (D5520, D6500, D6510, D7500, D8400), and the display versions with RICOH Interactive Whiteboard Controller Type2 V3.0 to V3.1.10137.0 attached (D5520, D6510, D7500, D8400) allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-16188?
CVE-2018-16188 is a SQL injection vulnerability in the RICOH Interactive Whiteboard D2200, D5500, D5510, and other models.
How severe is CVE-2018-16188?
CVE-2018-16188 has a severity score of 9.8 out of 10, indicating a critical vulnerability.
Which products are affected by CVE-2018-16188?
CVE-2018-16188 affects RICOH Interactive Whiteboard D2200 V1.3 to V2.2, D5500 V1.3 to V2.2, D5510 V1.3 to V2.2, and other models with certain firmware versions.
How can I fix CVE-2018-16188?
To fix CVE-2018-16188, apply the latest firmware updates provided by RICOH.
Where can I find more information about CVE-2018-16188?
You can find more information about CVE-2018-16188 at the following references: [Reference 1](https://jvn.jp/en/jp/JVN55263945/index.html), [Reference 2](https://www.ricoh.com/info/2018/1127_1.html).