CVE-2019-19363
38Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 4.4%
from disclosure to weapon0 days
Published on NVDJan 24
1st PoCJan 22
metasploitJan 22
exploitation probability
4.4%top 10% of all CVEs
observed exploitation
nono source reports it
4 public exploit(s)
An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver for Universal Print - Version 4.0 or later PS Driver for Universal Print - Version 4.0 or later PC FAX Generic Driver - All versions Generic PCL5 Driver - All versions RPCS Driver - All versions PostScript3 Driver - All versions PCL6 (PCL XL) Driver - All versions RPCS Raster Driver - All version
Affected products
n/a · n/apublic PoCs found — 4✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/48036exploitdbwww.exploit-db.com/exploits/47962unverifiedcve_referencepacketstormsecurity.com/files/156082/Ricoh-Printer-Driver-Local-Privilege-Escalation.htmlunverifiedcve_referencepacketstormsecurity.com/files/156251/Ricoh-Driver-Privilege-Escalation.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://jvn.jp/en/jp/JVN15697526/index.htmlhttp://packetstormsecurity.com/files/156082/Ricoh-Printer-Driver-Local-Privilege-Escalation.htmlhttp://packetstormsecurity.com/files/156251/Ricoh-Driver-Privilege-Escalation.htmlhttp://seclists.org/fulldisclosure/2020/Jan/34https://www.ricoh.com/info/2020/0122_1/