RICOH Streamline NX V3 PC Client Path Traversal Vulnerability Leading to Arbitrary Code Execution
Vulnerability
A path traversal vulnerability has been identified in RICOH Streamline NX V3 PC Client, specifically in versions 3.5.0 prior to 3.242.0. This vulnerability allows attackers to delete arbitrary files on the C:\ drive with 'NT AUTHORITY\SYSTEM' privileges. By exploiting this flaw, it is possible to execute arbitrary code on the affected PC.
Impact
Exploitation of this vulnerability could lead to arbitrary code execution on the PC where RICOH Streamline NX V3 PC Client is running.
Remediation
Users are advised to update RICOH Streamline NX V3 PC Client to the latest version. For more information, contact a local Ricoh representative or dealer.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
