Ricoh Laser Printers and MFPs Web Image Monitor Reflected Cross-Site Scripting Vulnerability

Vulnerability

A reflected cross-site scripting vulnerability has been identified in Ricoh laser printers and multifunction printers (MFPs) that use Web Image Monitor. This vulnerability allows an attacker to execute arbitrary scripts in the web browser of a user accessing the Web Image Monitor interface. The issue affects several different models and versions of Ricoh printers and MFPs.

Impact

Exploitation of this vulnerability allows for reflected cross-site scripting, where an attacker can execute scripts in the context of the user's browser.

Remediation

Users are advised to update Web Image Monitor to the latest version. For specific guidance, refer to the Ricoh vulnerability information page linked in the references.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
5.7
impact
1.0
exploitability
6.0
remediation
8.3
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.