First published: Wed Dec 07 2022(Updated: )
Cross-site scripting vulnerability in Aficio SP 4210N firmware versions prior to Web Support 1.05 allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Ricoh Aficio SP 4210N Firmware | <1.05 | |
Ricoh Aficio SP 4210N Firmware | ||
All of | ||
Ricoh Aficio SP 4210N Firmware | <1.05 | |
Ricoh Aficio SP 4210N Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-37406 is medium with a CVSS score of 4.8.
CVE-2022-37406 affects Ricoh Aficio SP 4210N firmware versions prior to Web Support 1.05.
CVE-2022-37406 allows a remote authenticated attacker with administrative privilege to inject an arbitrary script.
Yes, Ricoh Aficio SP 4210N firmware versions prior to Web Support 1.05 are vulnerable to CVE-2022-37406.
To fix CVE-2022-37406, update Ricoh Aficio SP 4210N firmware to Web Support 1.05 or later.