CVE-2025-58422

⚪ Do wiadomości

Manipulacja historią operacji w RICOH Streamline NX umożliwia atakującemu zmiany danych.

CVSS
3.1
EPSS
0.1%
Exploit
none
Vendor
Opis źródłowy (NVD)

RICOH Streamline NX versions 3.5.1 to 24R3 are vulnerable to tampering with operation history. If an attacker can perform a man-in-the-middle attack, they may alter the values of HTTP requests, which could result in tampering with the operation history of the product’s management tool.

brak Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS3.1
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.1%
Opublikowano (NVD)2025-09-08 05:15:34 UTC
Ostatnia modyfikacja (NVD)2026-09-30 23:10:00 UTC
Referencje