RICOH Streamline NX V3 PC Client Path Traversal Vulnerability Leading to Arbitrary Code Execution

Vulnerability

A path traversal vulnerability has been identified in RICOH Streamline NX V3 PC Client, specifically in versions 3.5.0 prior to 3.242.0. This vulnerability allows attackers to delete arbitrary files on the C:\ drive with 'NT AUTHORITY\SYSTEM' privileges. By exploiting this flaw, it is possible to execute arbitrary code on the affected PC.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution on the PC where RICOH Streamline NX V3 PC Client is running.

Remediation

Users are advised to update RICOH Streamline NX V3 PC Client to the latest version. For more information, contact a local Ricoh representative or dealer.

Added: Jun 13, 2025, 9:17 AM
Updated: Jun 13, 2025, 9:17 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
10.0
exploitability
7.4
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
5.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.