CRITICAL · 9.1

CVE-2022-43969

Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials.

Vulnerability Description

Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials.

CVSS Score

9.1

CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
NONE

Affected Products

VendorProductVersions
RicohMp C307 Firmware<= 1.14
RicohMp C307-
RicohMp C407 Firmware<= 1.14
RicohMp C407-
RicohMp C406 Firmware<= 1.20
RicohMp C406-
RicohMp C306 Firmware<= 1.20
RicohMp C306-
RicohIm Cw2200 Firmware<= 1.01
RicohIm Cw2200-
RicohIm Cw2201 Firmware<= 1.11
RicohIm Cw2201-
RicohMp 402Spf Firmware<= 1.12
RicohMp 402Spf-
RicohMp C2003 Smart Operation Panel Firmware<= 1.14
RicohMp C2003 Smart Operation Panel-
RicohMp C2503 Smart Operation Panel Firmware<= 1.14
RicohMp C2503 Smart Operation Panel-
RicohMp C2003 Firmware<= 1.17
RicohMp C2003-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-43969?

CVE-2022-43969 is a vulnerability with a CVSS score of 9.1 (CRITICAL). Ricoh mp_c4504ex devices with firmware 1.06 mishandle credentials.

How severe is CVE-2022-43969?

CVE-2022-43969 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2022-43969?

Check the references section above for vendor advisories and patch information. Affected products include: Ricoh Mp C307 Firmware, Ricoh Mp C307, Ricoh Mp C407 Firmware, Ricoh Mp C407, Ricoh Mp C406 Firmware.