CVE 2.3 LOW

CVE-2025-58422_CVE-2025-58422

2.3 / 10
LOW
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:P/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N

Description

RICOH Streamline NX versions 3.5.1 to 24R3 are vulnerable to tampering with operation history. If an attacker can perform a man-in-the-middle attack, they may alter the values of HTTP requests, which could result in tampering with the operation history of the product’s management tool.

Basic Information

ID CVE-2025-58422
Source jpcert
Published Sep 8, 2025 at 04:43

Affected Product

Vendor Ricoh Company, Ltd.
Product RICOH Streamline NX
Version versions 3.5.1 to 24R3
Affected Versions Ricoh Company, Ltd. RICOH Streamline NX versions 3.5.1 to 24R3

CWE Classification

References

πŸ’­ Join the Security Discussion

πŸ”’ Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.