peter bassill · operator
$ cve CVE-2019-19363 JSON

CVE-2019-19363 EXPLOIT

7.8
HIGH · CVSS 3.1 · EPSS 4.4% (pctl 91)

Patch early

A public exploit exists.

Description

An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver for Universal Print - Version 4.0 or later PS Driver for Universal Print - Version 4.0 or later PC FAX Generic Driver - All versions Generic PCL5 Driver - All versions RPCS Driver - All versions PostScript3 Driver - All versions PCL6 (PCL XL) Driver - All versions RPCS Raster Driver - All version

Scoring

CVSS7.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS4.44% — more likely to be exploited than 91% of all CVEs
WeaknessCWE-732
On CISA KEVno
Public exploityes
Published2020-01-24
Last modified2026-06-17

Affected (8)

VendorProduct
ricohgeneric pcl5 driver
ricohpc fax generic driver
ricohpcl6 \(pcl xl\) driver
ricohpcl6 driver for universal print
ricohpostscript3 driver
ricohps driver for universal print
ricohrpcs driver
ricohrpcs raster driver

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD