CVE-2018-16184

RICOH Interactive Whiteboard D2200 V1.6 to V2.2, D5500 V1.6 to V2.2, D5510 V1.6 to V2.2, and the display versions with RICOH Interactive Whiteboard Controller Type1 V1.6 to V2.2 attached (D5520, D6500, D6510, D7500, D8400) allows remote attackers to execute arbitrary commands via unspecified vectors.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ricoh:d2200_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d2200:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:ricoh:d5500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d5500:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:ricoh:d5510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d5510:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:ricoh:d5520_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d5520:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:ricoh:d6500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d6500:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:ricoh:d6510_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d6510:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:ricoh:d7500_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d7500:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:ricoh:d8400_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ricoh:d8400:-:*:*:*:*:*:*:*

Information

Published : 2019-01-09 23:29

Updated : 2019-10-03 00:03


NVD link : CVE-2018-16184

Mitre link : CVE-2018-16184


JSON object : View

Products Affected

ricoh

  • d5520
  • d5500_firmware
  • d6500
  • d6510
  • d7500_firmware
  • d5510
  • d7500
  • d8400
  • d2200
  • d6510_firmware
  • d8400_firmware
  • d5520_firmware
  • d5500
  • d5510_firmware
  • d2200_firmware
  • d6500_firmware
CWE
CWE-78

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')