Specific Ricoh MFPs and Printers - Open Redirect Vulnerability in Web Image Monitor
A vulnerability has been identified in the Web Image
Monitor that could allow an attacker to redirect users to a
malicious website.
Users are advised not to click URLs in emails or messages
from unverified senders.
Vulnerability Information ID : ricoh-2026-000004
Version : 1.00E
CVE ID(CWE ID) : CVE ID(CWE ID) CVE-2026-41226
CVSSv3 base score : 4.7 MEDIUM
List1: Ricoh products and services affected by this vulnerability
If you require further information and updates on this vulnerability: https://www.ricoh.com/products/security/vulnerabilities
Contact
Please contact your local Ricoh representative or dealer if you have any queries.
Acknowledgement:
Ricoh would like to thank Tony Kirkland of SIXGEN for reporting this vulnerability.
History:
2026-04-30T 12:00:00+09:00 : 1.00E Initial public release
| About Ricoh |
Ricoh is a global integrator in workplace transformation, operating in approximately 200 countries and regions and headquartered in Tokyo. Supporting customers’ value creation, Ricoh offers workplace services and solutions that empower organisations to work smarter through advanced technologies, including AI— together with long-standing expertise rooted in printing. Ricoh also operates commercial and industrial printing businesses and delivers new solutions leveraging inkjet technology. In the financial year ended March 2026, Ricoh Group had worldwide sales of 2,608 billion yen (approx. 16.4 billion USD).
For 90 years since our founding, Ricoh has upheld its mission and vision of empowering individuals to find Fulfillment through Work—and that commitment continues today. By understanding and transforming how people work, we unleash their potential and creativity to realise a sustainable future.
For further information, please visit www.ricoh.com