CVE-2018-17310

MEDIUM

RICOH MP C1803 JPN - XSS

Title source: llm
STIX 2.1

Description

On the RICOH MP C1803 JPN printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn parameter to /web/entry/en/address/adrsSetUserWizard.cgi.

Exploits (1)

exploitdb WORKING POC
by Ismail Tasdelen · textwebappshardware
https://www.exploit-db.com/exploits/45526

References (2)

Core 2
Core References
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/45526/

Scores

CVSS v3 6.1
EPSS 0.0065
EPSS Percentile 71.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Details

CWE
CWE-79
Status published
Products (1)
ricoh/mp_c1803_jpn_firmware
Published Sep 26, 2018
Tracked Since Feb 18, 2026