RICOH Web Image Monitor 1.09 contains an HTML injection vulnerability in the address configuration CGI script that allows attackers to inject malicious HTML code. Attackers can exploit the entryNameIn and entryDisplayNameIn parameters to insert arbitrary HTML content, potentially enabling cross-site scripting attacks.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Feb 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ricoh
Ricoh ricoh Web Image Monitor |
|
| Vendors & Products |
Ricoh
Ricoh ricoh Web Image Monitor |
Fri, 13 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 12 Feb 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | RICOH Web Image Monitor 1.09 contains an HTML injection vulnerability in the address configuration CGI script that allows attackers to inject malicious HTML code. Attackers can exploit the entryNameIn and entryDisplayNameIn parameters to insert arbitrary HTML content, potentially enabling cross-site scripting attacks. | |
| Title | RICOH Web Image Monitor 1.09 - HTML Injection | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-12T22:48:36.676Z
Updated: 2026-02-13T15:42:29.809Z
Reserved: 2026-02-12T14:36:52.749Z
Link: CVE-2019-25324
Updated: 2026-02-13T15:42:24.180Z
Status : Awaiting Analysis
Published: 2026-02-12T23:16:04.237
Modified: 2026-02-13T14:23:48.007
Link: CVE-2019-25324
No data.