ID

VAR-202502-2086


TITLE

RICOH IM 430 and RICOH IM C2000 have a command execution vulnerability

Trust: 0.6

sources: CNVD: CNVD-2025-03333

DESCRIPTION

RICOH IM 430 is a black and white laser multifunction printer. RICOH IM C2000 is a color digital multifunction printer. RICOH IM 430 and RICOH IM C2000 have command execution vulnerabilities. Attackers can exploit this vulnerability to execute printer commands and operate the printer, which may cause the printer to lose response, thus affecting the printing service.

Trust: 0.6

sources: CNVD: CNVD-2025-03333

IOT TAXONOMY

category:['IoT']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2025-03333

AFFECTED PRODUCTS

vendor:ricohmodel:imscope:eqversion:430

Trust: 0.6

vendor:ricohmodel:im c2000scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2025-03333

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2025-03333
value: HIGH

Trust: 0.6

CNVD: CNVD-2025-03333
severity: HIGH
baseScore: 8.5
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 7.8
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2025-03333

EXTERNAL IDS

db:CNVDid:CNVD-2025-03333

Trust: 0.6

sources: CNVD: CNVD-2025-03333

SOURCES

db:CNVDid:CNVD-2025-03333

LAST UPDATE DATE

2025-03-02T23:14:47.199000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2025-03333date:2025-02-21T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2025-03333date:2025-02-02T00:00:00