First published: Wed Sep 26 2018(Updated: )
On the RICOH MP C406Z printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ricoh MP C406 Firmware | ||
RICOH MP C406Z |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2018-17309.
The title of the vulnerability is 'On the RICOH MP C406Z printer HTML Injection and Stored XSS vulnerabilities have been discovered in ...'
The affected software is Ricoh Mp C406zspf Firmware.
The severity of CVE-2018-17309 is medium.
To fix CVE-2018-17309, apply the latest firmware update provided by Ricoh.