mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-08 18:35:21 +02:00
680 B
680 B
CVE-2018-15884
Description
RICOH MP C4504ex devices allow HTML Injection via the /web/entry/en/address/adrsSetUserWizard.cgi entryNameIn parameter.
POC
Reference
- http://packetstormsecurity.com/files/149082/RICOH-MP-C4504ex-Cross-Site-Request-Forgery.html
- https://www.exploit-db.com/exploits/45264/
Github
No PoCs found on GitHub currently.