Required CVE Record Information
Description
RICOH MP C4504ex devices allow HTML Injection via the /web/entry/en/address/adrsSetUserWizard.cgi entryNameIn parameter.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- http://packetstormsecurity.com/files/149082/RICOH-MP-C4504ex-Cross-Site-Request-Forgery.html x_transferred
- exploit-db.com: 45264 exploitx_transferred