Impact
Ricoh Web Image Monitor on multiple laser printers and multifunction printers contains a reflected cross‑site scripting flaw (CWE‑79). When a user accesses a specially crafted URL, arbitrary JavaScript can be executed in their browser, allowing malicious code to run within the browser context. The flaw does not compromise the device firmware, but it exposes users to potential browser‑based attacks.
Affected Systems
Ricoh Company, Ltd. laser printers and multifunction printers that implement Ricoh Web Image Monitor are affected. No firmware version information is available.
Risk and Exploitability
The CVSS score of 5.1 indicates a medium severity vulnerability. The EPSS score of less than 1% suggests a very low probability that this flaw is actively exploited. The flaw is not included in the CISA KEV catalog. An attacker would most likely trigger the vulnerability by sending an unsuspecting user a malicious URL that renders harmful script. Because the exploitation requires user interaction and does not compromise the device’s firmware, the risk is confined to the victim’s browser session.
OpenCVE Enrichment