Impact
Ricoh Web Image Monitor in multiple laser printers and multifunction printers contains a reflected cross‑site scripting flaw (CWE‑79). When a user accesses a maliciously crafted URL, the web browser is able to execute arbitrary JavaScript on the monitor’s web interface, enabling an attacker to run malware, steal session data or deface pages within the victim’s session. Based on the description, it is inferred that the query parameters are not properly sanitized, allowing the script execution.
Affected Systems
Ricoh Company, multifunction printers that run the Ricoh Web Image Monitor are affected. No specific firmware versions are listed.
Risk and Exploitability
The CVSS score of 5.1 indicates a medium severity risk. The EPSS score of <1% indicates a very low exploitation probability, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is remote, via HTTP requests to the Web Image Monitor, and an attacker could trigger the flaw by directing a user to a maliciously crafted URL.
OpenCVE Enrichment