CVE-2019-11844

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
14/05/2019
Last modified:
24/08/2020

Description

An HTML Injection vulnerability has been discovered on the RICOH SP 4520DN via the /web/entry/en/address/adrsSetUserWizard.cgi entryNameIn or entryDisplayNameIn parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:ricoh:sp_4520dn_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:sp_4520dn:-:*:*:*:*:*:*:*