4.6
CVSSv2

CVE-2019-19363

Published: 24/01/2020 Updated: 10/02/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 410
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in Ricoh (including Savin and Lanier) Windows printer drivers before 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver for Universal Print - Version 4.0 or later PS Driver for Universal Print - Version 4.0 or later PC FAX Generic Driver - All versions Generic PCL5 Driver - All versions RPCS Driver - All versions PostScript3 Driver - All versions PCL6 (PCL XL) Driver - All versions RPCS Raster Driver - All version

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ricoh ps driver for universal print

ricoh pcl6 driver for universal print

ricoh rpcs driver -

ricoh postscript3 driver -

ricoh pcl6 \\(pcl xl\\) driver -

ricoh pc fax generic driver -

ricoh generic pcl5 driver -

ricoh rpcs raster driver -

Exploits

This Metasploit module leverages the prnmngrvbs script to add and delete printers Multiple runs of this module may be required given successful exploitation is time-sensitive ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> CVE-2019-19363 - Local Privilege Escalation in many Ricoh Printer Drivers for Windows <!--X-Subject-Header-End--> <!-- ...