Refine your search

4 vulnerabilities found for (multiple product) by Ricoh Co., Ltd

jvndb-2026-000102
Vulnerability from jvndb
Published
2026-07-23 15:08
Modified
2026-07-23 15:08
Severity ?
Summary
Ricoh printers and Multifunction Printers (MFPs) missing restriction on SSH port forwarding
Details
Some series of printers and Multifunction Printers (MFPs) provided by Ricoh Company, Ltd. provide SSH service, but no restriction is implemented on SSH port forwarding.<a href='https://cwe.mitre.org/data/definitions/923.html' target='_blank'></a><ul><li>Improper restriction of communication channel to intended endpoints (CWE-923) - CVE-2026-63226</li></ul>Brandon Roach and Bryan Clements of Pathfynder.io reported this vulnerability to Ricoh Company, Ltd. and coordinated. After the coordination was completed, Ricoh Company, Ltd. reported the case to JPCERT/CC to notify users of the solution through JVN.
Impacted products
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2026/JVNDB-2026-000102.html",
  "dc:date": "2026-07-23T15:08+09:00",
  "dcterms:issued": "2026-07-23T15:08+09:00",
  "dcterms:modified": "2026-07-23T15:08+09:00",
  "description": "Some series of printers and Multifunction Printers (MFPs) provided by Ricoh Company, Ltd. provide SSH service, but no restriction is implemented on SSH port forwarding.\u003ca href=\u0027https://cwe.mitre.org/data/definitions/923.html\u0027 target=\u0027_blank\u0027\u003e\u003c/a\u003e\u003cul\u003e\u003cli\u003eImproper restriction of communication channel to intended endpoints (CWE-923) - CVE-2026-63226\u003c/li\u003e\u003c/ul\u003eBrandon Roach and Bryan Clements of Pathfynder.io reported this vulnerability to Ricoh Company, Ltd. and coordinated. After the coordination was completed, Ricoh Company, Ltd. reported the case to JPCERT/CC to notify users of the solution through JVN.",
  "link": "https://jvndb.jvn.jp/en/contents/2026/JVNDB-2026-000102.html",
  "sec:cpe": {
    "#text": "cpe:/a:ricoh:multiple_product",
    "@product": "(multiple product)",
    "@vendor": "Ricoh Co., Ltd",
    "@version": "2.2"
  },
  "sec:cvss": {
    "@score": "5.8",
    "@severity": "Medium",
    "@type": "Base",
    "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N",
    "@version": "3.0"
  },
  "sec:identifier": "JVNDB-2026-000102",
  "sec:references": [
    {
      "#text": "https://jvn.jp/en/jp/JVN32082029/index.html",
      "@id": "JVN#32082029",
      "@source": "JVN"
    },
    {
      "#text": "https://www.cve.org/CVERecord?id=CVE-2026-63226",
      "@id": "CVE-2026-63226",
      "@source": "CVE"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-Other",
      "@title": "No Mapping(CWE-Other)"
    }
  ],
  "title": "Ricoh printers and Multifunction Printers (MFPs) missing restriction on SSH port forwarding"
}

jvndb-2026-000085
Vulnerability from jvndb
Published
2026-06-15 15:30
Modified
2026-06-15 15:30
Severity ?
Summary
Privilege escalation vulnerability in multiple RICOH and KONICA MINOLTA JAPAN printer drivers
Details
Multiple printer drivers provided by RICOH and KONICA MINOLTA JAPAN contain the following vulnerability:<a href='https://cwe.mitre.org/data/definitions/427.html' target='_blank'></a><ul><li>Privilege escalation (CWE-427) - CVE-2026-50100</li></ul>Ricoh Company, Ltd. reported this vulnerability to IPA to notify users of its solution through JVN. JPCERT/CC and Ricoh Company, Ltd. coordinated under the Information Security Early Warning Partnership.
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2026/JVNDB-2026-000085.html",
  "dc:date": "2026-06-15T15:30+09:00",
  "dcterms:issued": "2026-06-15T15:30+09:00",
  "dcterms:modified": "2026-06-15T15:30+09:00",
  "description": "Multiple printer drivers provided by RICOH and KONICA MINOLTA JAPAN contain the following vulnerability:\u003ca href=\u0027https://cwe.mitre.org/data/definitions/427.html\u0027 target=\u0027_blank\u0027\u003e\u003c/a\u003e\u003cul\u003e\u003cli\u003ePrivilege escalation (CWE-427) - CVE-2026-50100\u003c/li\u003e\u003c/ul\u003eRicoh Company, Ltd. reported this vulnerability to IPA to notify users of its solution through JVN. JPCERT/CC and Ricoh Company, Ltd. coordinated under the Information Security Early Warning Partnership.",
  "link": "https://jvndb.jvn.jp/en/contents/2026/JVNDB-2026-000085.html",
  "sec:cpe": [
    {
      "#text": "cpe:/a:misc:konicaminolta_multiple_product",
      "@product": "(multiple product)",
      "@vendor": "KONICA MINOLTA JAPAN, INC.",
      "@version": "2.2"
    },
    {
      "#text": "cpe:/a:ricoh:multiple_product",
      "@product": "(multiple product)",
      "@vendor": "Ricoh Co., Ltd",
      "@version": "2.2"
    }
  ],
  "sec:cvss": {
    "@score": "7.8",
    "@severity": "High",
    "@type": "Base",
    "@vector": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
    "@version": "3.0"
  },
  "sec:identifier": "JVNDB-2026-000085",
  "sec:references": [
    {
      "#text": "https://jvn.jp/en/jp/JVN55319858/index.html",
      "@id": "JVN#55319858",
      "@source": "JVN"
    },
    {
      "#text": "https://www.cve.org/CVERecord?id=CVE-2026-50100",
      "@id": "CVE-2026-50100",
      "@source": "CVE"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-Other",
      "@title": "No Mapping(CWE-Other)"
    }
  ],
  "title": "Privilege escalation vulnerability in multiple RICOH and KONICA MINOLTA JAPAN printer drivers"
}

jvndb-2026-002119
Vulnerability from jvndb
Published
2026-01-30 11:26
Modified
2026-01-30 11:26
Severity ?
Summary
Multiple vulnerabilities in BROTHER MFPs (multifunction printers)
Details
Multiple MFPs provided by BROTHER INDUSTRIES, LTD. contain multiple vulnerabilities listed below.<ul><li>Improper certificate validation (CWE-295) - CVE-2025-53869</li><li>Hidden Functionality (CWE-912) - CVE-2025-55704</li></ul>Anton Fabricius of SySS GmbH reported these vulnerabilities to the developer. JPCERT/CC coordinated between the reporter and the developer.
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2026/JVNDB-2026-002119.html",
  "dc:date": "2026-01-30T11:26+09:00",
  "dcterms:issued": "2026-01-30T11:26+09:00",
  "dcterms:modified": "2026-01-30T11:26+09:00",
  "description": "Multiple MFPs provided by BROTHER INDUSTRIES, LTD. contain multiple vulnerabilities listed below.\u003cul\u003e\u003cli\u003eImproper certificate validation (CWE-295) - CVE-2025-53869\u003c/li\u003e\u003cli\u003eHidden Functionality (CWE-912) - CVE-2025-55704\u003c/li\u003e\u003c/ul\u003eAnton Fabricius of SySS GmbH reported these vulnerabilities to the developer.\r\nJPCERT/CC coordinated between the reporter and the developer.",
  "link": "https://jvndb.jvn.jp/en/contents/2026/JVNDB-2026-002119.html",
  "sec:cpe": [
    {
      "#text": "cpe:/a:brother:multiple_products",
      "@product": "(Multiple Products)",
      "@vendor": "Brother Industries",
      "@version": "2.2"
    },
    {
      "#text": "cpe:/a:ricoh:multiple_product",
      "@product": "(multiple product)",
      "@vendor": "Ricoh Co., Ltd",
      "@version": "2.2"
    },
    {
      "#text": "cpe:/o:konicaminolta:multiple_product",
      "@product": "(Multiple Products)",
      "@vendor": "KONICA MINOLTA, INC.",
      "@version": "2.2"
    }
  ],
  "sec:cvss": {
    "@score": "5.3",
    "@severity": "Medium",
    "@type": "Base",
    "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N",
    "@version": "3.0"
  },
  "sec:identifier": "JVNDB-2026-002119",
  "sec:references": [
    {
      "#text": "https://jvn.jp/en/vu/JVNVU92878805/index.html",
      "@id": "JVNVU#92878805",
      "@source": "JVN"
    },
    {
      "#text": "https://www.cve.org/CVERecord?id=CVE-2025-53869",
      "@id": "CVE-2025-53869",
      "@source": "CVE"
    },
    {
      "#text": "https://www.cve.org/CVERecord?id=CVE-2025-55704",
      "@id": "CVE-2025-55704",
      "@source": "CVE"
    },
    {
      "#text": "https://cwe.mitre.org/data/definitions/295.html",
      "@id": "CWE-295",
      "@title": "Improper Certificate Validation(CWE-295)"
    },
    {
      "#text": "https://cwe.mitre.org/data/definitions/912.html",
      "@id": "CWE-912",
      "@title": "Hidden Functionality(CWE-912)"
    }
  ],
  "title": "Multiple vulnerabilities in BROTHER MFPs (multifunction printers)"
}

jvndb-2024-000070
Vulnerability from jvndb
Published
2024-07-10 14:16
Modified
2024-07-10 14:16
Severity ?
Summary
Out-of-bounds write vulnerability in Ricoh MFPs and printers
Details
MFPs (multifunction printers) and printers provided by Ricoh Company, Ltd. contain an out-of-bounds write vulnerability (CWE-787). Ricoh Company, Ltd. reported this vulnerability to IPA to notify users of its solution through JVN. JPCERT/CC and Ricoh Company, Ltd. coordinated under the Information Security Early Warning Partnership.
Impacted products
Show details on JVN DB website


{
  "@rdf:about": "https://jvndb.jvn.jp/en/contents/2024/JVNDB-2024-000070.html",
  "dc:date": "2024-07-10T14:16+09:00",
  "dcterms:issued": "2024-07-10T14:16+09:00",
  "dcterms:modified": "2024-07-10T14:16+09:00",
  "description": "MFPs (multifunction printers) and printers provided by Ricoh Company, Ltd. contain an out-of-bounds write vulnerability (CWE-787).\r\n \r\nRicoh Company, Ltd. reported this vulnerability to IPA to notify users of its solution through JVN. JPCERT/CC and Ricoh Company, Ltd. coordinated under the Information Security Early Warning Partnership.",
  "link": "https://jvndb.jvn.jp/en/contents/2024/JVNDB-2024-000070.html",
  "sec:cpe": {
    "#text": "cpe:/a:ricoh:multiple_product",
    "@product": "(multiple product)",
    "@vendor": "Ricoh Co., Ltd",
    "@version": "2.2"
  },
  "sec:cvss": {
    "@score": "8.2",
    "@severity": "High",
    "@type": "Base",
    "@vector": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H",
    "@version": "3.0"
  },
  "sec:identifier": "JVNDB-2024-000070",
  "sec:references": [
    {
      "#text": "https://jvn.jp/en/jp/JVN14294633/index.html",
      "@id": "JVN#14294633",
      "@source": "JVN"
    },
    {
      "#text": "https://www.cve.org/CVERecord?id=CVE-2024-39927",
      "@id": "CVE-2024-39927",
      "@source": "CVE"
    },
    {
      "#text": "https://www.ipa.go.jp/en/security/vulnerabilities/cwe.html",
      "@id": "CWE-Other",
      "@title": "No Mapping(CWE-Other)"
    }
  ],
  "title": "Out-of-bounds write vulnerability in Ricoh MFPs and printers"
}