CVE-2025-36506 Information

Description

External control of file name or path issue exists in RICOH Streamline NX V3 PC Client versions 3.5.0 to 3.242.0. If an attacker sends a specially crafted request arbitrary files in the file system can be overwritten with log data.

Reference

https://jvn.jp/en/jp/JVN27937557/ https://www.ricoh.com/products/security/vulnerabilities/vul?id=ricoh-2025-000004

CNNVD-202509-1765 (Published: 2025-09-12)

Share on: