---
cve: "CVE-2019-19363"
severity: "HIGH"
cvss: 7.8
epss: "23.7%"
vendor: "Microsoft"
kev: false
exploited: false
published: "2020-01-24 18:15:12"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-12T15:41:36+02:00"
---

# CVE-2019-19363

> 7.8 HIGH

## Beschreibung

An issue was discovered in Ricoh (including Savin and Lanier) Windows printer drivers prior to 2020 that allows attackers local privilege escalation. Affected drivers and versions are: PCL6 Driver for Universal Print - Version 4.0 or later PS Driver for Universal Print - Version 4.0 or later PC FAX Generic Driver - All versions Generic PCL5 Driver - All versions RPCS Driver - All versions PostScript3 Driver - All versions PCL6 (PCL XL) Driver - All versions RPCS Raster Driver - All version

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Hoch | bad |
| A Verfügbarkeit | Hoch | bad |

## Exploit-Evidenz

- [EDB-48036 — Ricoh Driver - Privilege Escalation (Metasploit)](https://www.exploit-db.com/exploits/48036) ✅
- [EDB-47962 — Ricoh Printer Drivers - Local Privilege Escalation](https://www.exploit-db.com/exploits/47962)

## Referenzen

- <http://jvn.jp/en/jp/JVN15697526/index.html>
- <http://packetstormsecurity.com/files/156082/Ricoh-Printer-Driver-Local-Privilege-Escalation.html>
- <http://packetstormsecurity.com/files/156251/Ricoh-Driver-Privilege-Escalation.html>
- <http://seclists.org/fulldisclosure/2020/Jan/34>
- <https://www.ricoh.com/info/2020/0122_1/>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2019-19363) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
