CVE-2019-19363
38Vexday Risk Score
Corrija em breve. Ela tem exploit funcional público.
ssvc Attendepss 4.4%
da publicação à arma0 dias
Publicada no NVD24 de jan.
1ª PoC22 de jan.
metasploit22 de jan.
probabilidade de exploração
4.4%top 9% das CVEs
exploração observada
nãonenhuma fonte reporta
4 exploit(s) público(s)
An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver for Universal Print - Version 4.0 or later PS Driver for Universal Print - Version 4.0 or later PC FAX Generic Driver - All versions Generic PCL5 Driver - All versions RPCS Driver - All versions PostScript3 Driver - All versions PCL6 (PCL XL) Driver - All versions RPCS Raster Driver - All version
Produtos afetados
n/a · n/aPoCs públicas encontradas — 4✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/48036exploitdbwww.exploit-db.com/exploits/47962não verificadocve_referencepacketstormsecurity.com/files/156082/Ricoh-Printer-Driver-Local-Privilege-Escalation.htmlnão verificadocve_referencepacketstormsecurity.com/files/156251/Ricoh-Driver-Privilege-Escalation.htmlnão verificado⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.
Referências
http://jvn.jp/en/jp/JVN15697526/index.htmlhttp://packetstormsecurity.com/files/156082/Ricoh-Printer-Driver-Local-Privilege-Escalation.htmlhttp://packetstormsecurity.com/files/156251/Ricoh-Driver-Privilege-Escalation.htmlhttp://seclists.org/fulldisclosure/2020/Jan/34https://www.ricoh.com/info/2020/0122_1/