Description
Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials.
References (2)
Core 2
Core References
Scores
CVSS v3
9.1
EPSS
0.0054
EPSS Percentile
40.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
total
Details
CWE
CWE-522
Status
published
Products (50)
ricoh/im_2500_firmware
< 4.02
ricoh/im_2702_firmware
< 1.12
ricoh/im_3000_firmware
< 4.02
ricoh/im_3500_firmware
< 4.02
ricoh/im_350_firmware
< 1.10
ricoh/im_350f_firmware
< 1.10
ricoh/im_4000_firmware
< 4.02
ricoh/im_430f_firmware
< 1.10
ricoh/im_430fb_firmware
< 1.10
ricoh/im_5000_firmware
< 4.02
... and 40 more
Published
Feb 16, 2023
Tracked Since
Feb 18, 2026