Vulnerability CVE-2022-37406


Published: 2022-12-07

Description:
Cross-site scripting vulnerability in Aficio SP 4210N firmware versions prior to Web Support 1.05 allows a remote authenticated attacker with an administrative privilege to inject an arbitrary script.

 References:
https://jvn.jp/en/jp/JVN24659622/index.html
https://support.ricoh.com/bb/html/dr_ut_e/rc3/model/sp42/sp42.htm
https://support.ricoh.com/bbv2/html/dr_ut_d/ipsio/history/w/bb/pub_j/dr_ut_d/4101044/4101044791/V101/5236968/redirect_CLUTool_DOM/history.htm

Copyright 2026, cxsecurity.com

 

Back to Top