OS Command Injection Vulnerability in Image Scanner Driver for Linux by Ricoh
CVE-2026-78229

5.4MEDIUM

What is CVE-2026-78229?

The Image Scanner Driver for Linux is affected by an OS command injection vulnerability that allows authenticated attackers to execute arbitrary OS commands. By gaining access to a system running the affected driver, an attacker can leverage this vulnerability to manipulate system operations and potentially compromise data integrity and security. Proper security measures should be implemented to mitigate the risks associated with this weakness.

Affected Version(s)

Image Scanner Driver for Linux (fi Series) 2.0.0

Image Scanner Driver for Linux (fi Series) 2.1.0 <= 2.1.1

Image Scanner Driver for Linux (fi Series) 2.3.2

References

CVSS V4

Score:
5.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.