CVE-2019-14301: Infoleak

Published Jan 10, 2020
·
Updated

Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 1 of 2).

Affected Software

104 affected components
Ricoh Sp C250sf Firmware<1.15
Ricoh Sp C250sf
Ricoh Sp C252sf Firmware<1.15
Ricoh Sp C252sf
Ricoh Sp C250dn Firmware<1.09
Ricoh SP C250DN
Ricoh Sp C252dn Firmware<1.09
Ricoh Sp C252dn
Ricoh M C250fw Firmware<1.02
Ricoh M C250fw
Ricoh M C250fwb Firmware<1.02
Ricoh M C250fwb
Ricoh P C300w Firmware<1.02
Ricoh P C300w
Ricoh P C301w Firmware<1.02
Ricoh P C301w
Ricoh Sp 330sn Firmware<1.07
Ricoh SP 330SN
Ricoh Sp 330sfn Firmware<1.07
Ricoh Sp 330sfn
Ricoh Sp 330dn Firmware<1.07
Ricoh Sp 330dn
Ricoh Sp 3710sf Firmware<1.07
Ricoh Sp 3710sf
Ricoh Sp 3710dn Firmware<1.07
Ricoh Sp 3710dn
Ricoh Sp C260dnw Firmware<1.12
Ricoh Sp C260dnw
Ricoh Sp C260sfnw Firmware<1.15
Ricoh Sp C260sfnw
Ricoh Sp C261dnw Firmware<1.13
Ricoh Sp C261dnw
Ricoh Sp C261sfnw Firmware<1.17
Ricoh Sp C261sfnw
Ricoh Sp C262sfnw Firmware<1.17
Ricoh Sp C262sfnw
Ricoh Sp C262dnw Firmware<1.13
Ricoh Sp C262dnw
Ricoh Mp 2014 Firmware<1.10
Ricoh Mp 2014
Ricoh Mp 2014d Firmware<1.10
Ricoh Mp 2014d
Ricoh Mp 2014ad Firmware<1.10
Ricoh Mp 2014ad
Ricoh M 2700 Firmware<1.06
Ricoh M 2700
Ricoh M 2701 Firmware<1.06
Ricoh M 2701
Ricoh Sp 221s Firmware<1.10
Ricoh SP 221S
Ricoh Sp 220snw Firmware<1.11
Ricoh SP 220SNw
Ricoh Sp 221snw Firmware<1.11
Ricoh SP 221SNw
Ricoh Sp 221sf Firmware<1.11
Ricoh SP 221SF
Ricoh Sp 220sfnw Firmware<1.12
Ricoh SP 220SFNw
Ricoh Sp 221sfnw Firmware<1.12
Ricoh SP 221SFNw
Ricoh Sp 277snwx Firmware<1.12
Ricoh Sp 277snwx
Ricoh Sp 277sfnwx Firmware<1.12
Ricoh Sp 277sfnwx
Ricoh Sp 221 Firmware<1.02
Ricoh Sp 221
Ricoh Sp 220nw Firmware<1.04
Ricoh Sp 220nw
Ricoh Sp 221nw Firmware<1.04
Ricoh Sp 221nw
Ricoh Sp277nwx Firmware<1.04
Ricoh Sp277nwx
Ricoh Sp 212snw Firmware<1.07
Ricoh Sp 212snw
Ricoh Sp 212sfnw Firmware<1.08
Ricoh Sp 212sfnw
Ricoh Sp 212sfw Firmware<1.08
Ricoh Sp 212sfw
Ricoh Sp 212sfnw \(china\) Firmware<1.08
Ricoh Sp 212sfnw \(china\)
Ricoh Sp 212suw Firmware<1.07
Ricoh Sp 212suw
Ricoh Sp 213snw Firmware<1.07
Ricoh Sp 213snw
Ricoh Sp 213snw \(taiwan\) Firmware<1.05
Ricoh Sp 213snw \(taiwan\)
Ricoh Sp 213suw Firmware<1.07
Ricoh Sp 213suw
Ricoh Sp 213sfnw Firmware<1.07
Ricoh Sp 213sfnw
Ricoh Sp 213sfw Firmware<1.07
Ricoh Sp 213sfw
Ricoh Sp 213sfnw \(taiwan\) Firmware<1.06
Ricoh Sp 213sfnw \(taiwan\)
Ricoh Sp 212nw Firmware<1.06
Ricoh Sp 212nw
Ricoh Sp 213nw Firmware<1.06
Ricoh Sp 213nw
Ricoh Sp 213nw \(taiwan\) Firmware<1.04
Ricoh Sp 213nw \(taiwan\)
Ricoh Sp 212w Firmware<1.06
Ricoh Sp 212w
Ricoh Sp 213w Firmware<1.06
Ricoh Sp 213w

Event History

Jan 10, 2020
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2019-14301?

CVE-2019-14301 is considered a high severity vulnerability due to its access control issues.

2

How do I fix CVE-2019-14301?

To fix CVE-2019-14301, users should update their Ricoh SP C250DN devices to the latest firmware version beyond 1.06.

3

What devices are affected by CVE-2019-14301?

CVE-2019-14301 affects Ricoh SP C250DN devices running firmware versions up to 1.06.

4

Is there a workaround for CVE-2019-14301?

There are no specific workarounds mentioned for CVE-2019-14301; updating the firmware is recommended.

5

Can CVE-2019-14301 be exploited remotely?

Yes, CVE-2019-14301 can potentially be exploited remotely due to incorrect access control settings.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203