Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r277-f4fh-cwv4

Опубликовано: 08 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 2.3
CVSS3: 3.1

Описание

RICOH Streamline NX versions 3.5.1 to 24R3 are vulnerable to tampering with operation history. If an attacker can perform a man-in-the-middle attack, they may alter the values of HTTP requests, which could result in tampering with the operation history of the product’s management tool.

RICOH Streamline NX versions 3.5.1 to 24R3 are vulnerable to tampering with operation history. If an attacker can perform a man-in-the-middle attack, they may alter the values of HTTP requests, which could result in tampering with the operation history of the product’s management tool.

EPSS

Процентиль: 3%
0.00017
Низкий

2.3 Low

CVSS4

3.1 Low

CVSS3

Дефекты

CWE-348

Связанные уязвимости

CVSS3: 3.1
nvd
5 месяцев назад

RICOH Streamline NX versions 3.5.1 to 24R3 are vulnerable to tampering with operation history. If an attacker can perform a man-in-the-middle attack, they may alter the values of HTTP requests, which could result in tampering with the operation history of the product’s management tool.

EPSS

Процентиль: 3%
0.00017
Низкий

2.3 Low

CVSS4

3.1 Low

CVSS3

Дефекты

CWE-348