4.3
CVSSv2

CVE-2018-16187

Published: 09/01/2019 Updated: 08/02/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.9 | Impact Score: 3.6 | Exploitability Score: 2.2
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The RICOH Interactive Whiteboard D2200 V1.3 to V2.2, D5500 V1.3 to V2.2, D5510 V1.3 to V2.2, the display versions with RICOH Interactive Whiteboard Controller Type1 V1.3 to V2.2 attached (D5520, D6500, D6510, D7500, D8400), and the display versions with RICOH Interactive Whiteboard Controller Type2 V3.0 to V3.1.10137.0 attached (D5520, D6510, D7500, D8400) does not verify its server certificates, which allows man-in-the-middle malicious users to eversdrop on encrypted communication.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ricoh d2200_firmware

ricoh d5500_firmware

ricoh d5510_firmware

ricoh d5520_firmware

ricoh d6500_firmware

ricoh d6510_firmware

ricoh d7500_firmware

ricoh d8400_firmware