First published: Tue Dec 31 2019(Updated: )
A directory traversal and local file inclusion vulnerability in FPProducerInternetServer.exe in Ricoh MarcomCentral, formerly PTI Marketing, FusionPro VDP before 10.0 allows a remote attacker to list or enumerate sensitive contents of files. Furthermore, this could allow for privilege escalation by dumping the local machine's SAM and SYSTEM database files, and possibly remote code execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ricoh FusionPro VDP | <10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2019-7751.
The severity level of CVE-2019-7751 is high.
The affected software for CVE-2019-7751 is Ricoh FusionPro Vdp version up to exclusive 10.0.
The CWE ID of CVE-2019-7751 is CWE-22.
Yes, there are known exploits for CVE-2019-7751. You can find more information in the provided references.