CVE-2018-17315: XSS
Published Sep 26, 2018
·Updated
On the RICOH MP C2003 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.
Affected Software
2 affected components
Ricoh Mp C2003sp Firmware
Ricoh MP C2003
Event History
Sep 26, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-17315?
CVE-2018-17315 is a vulnerability found in the RICOH MP C2003 printer, specifically in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.
2
How severe is CVE-2018-17315?
CVE-2018-17315 has a severity rating of 6.1, which is considered medium.
3
What is the affected software of CVE-2018-17315?
The affected software of CVE-2018-17315 is the Ricoh Mp C2003sp Firmware.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2018-17315?
The Common Weakness Enumeration (CWE) ID for CVE-2018-17315 is CWE-79.
5
Is RICOH MP C2003 vulnerable to CVE-2018-17315?
No, the RICOH MP C2003 printer is not vulnerable to CVE-2018-17315.