CVE-2021-33945

Exp

RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500SF, SP 221S, SP 220SNw, SP 221SNw, SP 221SF, SP 220SFNw, SP 221SFNw v1.06 were discovered to contain a stack buffer overflow in the file /etc/wpa_supplicant.conf. This vulnerability allows attackers to cause a Denial of Service (DoS) via crafted overflow data.

Published: 2022-02-15 Last update: 2024-11-21 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2021-33945 is rated High Exploit Risk (77.4/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 0.54%). Core evidence: 1 public exploit reference(s) are indexed (Exploit-DB). Mandatory action: Public exploits are available—assess exposure, apply mitigations, and prioritize patching.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Public exploit references (Exploit-DB) for CVE-2021-33945

EDB-ID Source Kind Published Link
nvd_ref exploit_tag Exploit-DB ↗

Exploit prediction scoring system (EPSS) score for CVE-2021-33945

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2025-11-21 0.68% 0.54% -0.14%
2 2025-11-18 0.54% 0.68% +0.13%
3 2025-03-30 0.54%

Full EPSS history (10 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2021-33945

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
9.8 3.1 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Click to expand
Attack vector (AV:N)
Could be attacked over the internet or any normal routed network—not just someone sitting at the machine.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:N)
No account or special rights needed—anonymous or random user is enough.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:H)
Serious risk that confidential data gets exposed in a big way.
Integrity (I:H)
They could widely tamper with or forge data—trust in the data is badly hurt.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
3.9 5.9 [email protected]
7.5 2.0 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P Click to expand
Access vector (AV:N)
Can be exploited remotely over network reachability.
Access complexity (AC:L)
Exploitation conditions are straightforward and predictable.
Authentication (AU:N)
No authentication is required.
Confidentiality impact (C:P)
Partial confidentiality impact.
Integrity impact (I:P)
Partial integrity impact.
Availability impact (A:P)
Partial availability impact.
10.0 6.4 [email protected]

Weakness enumeration for CVE-2021-33945

Affected software / configurations for CVE-2021-33945

Vendor Product Version Raw CPE
ricoh sp_320dn_firmware 1.06 cpe:2.3:o:ricoh:sp_320dn_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_325dnw_firmware 1.06 cpe:2.3:o:ricoh:sp_325dnw_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_320sn_firmware 1.06 cpe:2.3:o:ricoh:sp_320sn_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_320sfn_firmware 1.06 cpe:2.3:o:ricoh:sp_320sfn_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_325snw_firmware 1.06 cpe:2.3:o:ricoh:sp_325snw_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_325sfnw_firmware 1.06 cpe:2.3:o:ricoh:sp_325sfnw_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_330sn_firmware 1.06 cpe:2.3:o:ricoh:sp_330sn_firmware:1.06:*:*:*:*:*:*:*
ricoh aficio_sp_3500sf_firmware 1.06 cpe:2.3:o:ricoh:aficio_sp_3500sf_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_221s_firmware 1.06 cpe:2.3:o:ricoh:sp_221s_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_220snw_firmware 1.06 cpe:2.3:o:ricoh:sp_220snw_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_221snw_firmware 1.06 cpe:2.3:o:ricoh:sp_221snw_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_221sf_firmware 1.06 cpe:2.3:o:ricoh:sp_221sf_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_220sfnw_firmware 1.06 cpe:2.3:o:ricoh:sp_220sfnw_firmware:1.06:*:*:*:*:*:*:*
ricoh sp_221sfnw_firmware 1.06 cpe:2.3:o:ricoh:sp_221sfnw_firmware:1.06:*:*:*:*:*:*:*
ricoh m_c2000_firmware cpe:2.3:o:ricoh:m_c2000_firmware:-:*:*:*:*:*:*:*
ricoh m_c250fwb_firmware cpe:2.3:o:ricoh:m_c250fwb_firmware:-:*:*:*:*:*:*:*
ricoh m_c250fw_firmware cpe:2.3:o:ricoh:m_c250fw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c260sfnw_firmware cpe:2.3:o:ricoh:sp_c260sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c262sfnw_firmware cpe:2.3:o:ricoh:sp_c262sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c261sfnw_firmware cpe:2.3:o:ricoh:sp_c261sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c250sf_firmware cpe:2.3:o:ricoh:sp_c250sf_firmware:-:*:*:*:*:*:*:*
ricoh sp_c252sf_firmware cpe:2.3:o:ricoh:sp_c252sf_firmware:-:*:*:*:*:*:*:*
ricoh p_c300w_firmware cpe:2.3:o:ricoh:p_c300w_firmware:-:*:*:*:*:*:*:*
ricoh p_c301w_firmware cpe:2.3:o:ricoh:p_c301w_firmware:-:*:*:*:*:*:*:*
ricoh sp_c260dnw_firmware cpe:2.3:o:ricoh:sp_c260dnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c262dnw_firmware cpe:2.3:o:ricoh:sp_c262dnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c261dnw_firmware cpe:2.3:o:ricoh:sp_c261dnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_c250dn_firmware cpe:2.3:o:ricoh:sp_c250dn_firmware:-:*:*:*:*:*:*:*
ricoh sp_c252dn_firmware cpe:2.3:o:ricoh:sp_c252dn_firmware:-:*:*:*:*:*:*:*
ricoh m_320_firmware cpe:2.3:o:ricoh:m_320_firmware:-:*:*:*:*:*:*:*
ricoh m_320fb_firmware cpe:2.3:o:ricoh:m_320fb_firmware:-:*:*:*:*:*:*:*
ricoh m_320f_firmware cpe:2.3:o:ricoh:m_320f_firmware:-:*:*:*:*:*:*:*
ricoh m_2700_firmware cpe:2.3:o:ricoh:m_2700_firmware:-:*:*:*:*:*:*:*
ricoh m_2701_firmware cpe:2.3:o:ricoh:m_2701_firmware:-:*:*:*:*:*:*:*
ricoh sp_330sn_firmware cpe:2.3:o:ricoh:sp_330sn_firmware:-:*:*:*:*:*:*:*
ricoh sp_330sfn_firmware cpe:2.3:o:ricoh:sp_330sfn_firmware:-:*:*:*:*:*:*:*
ricoh sp_3710sf_firmware cpe:2.3:o:ricoh:sp_3710sf_firmware:-:*:*:*:*:*:*:*
ricoh sp_220snw_firmware cpe:2.3:o:ricoh:sp_220snw_firmware:-:*:*:*:*:*:*:*
ricoh sp_221snw_firmware cpe:2.3:o:ricoh:sp_221snw_firmware:-:*:*:*:*:*:*:*
ricoh sp_220sfnw_firmware cpe:2.3:o:ricoh:sp_220sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_221sfnw_firmware cpe:2.3:o:ricoh:sp_221sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_277snwx_firmware cpe:2.3:o:ricoh:sp_277snwx_firmware:-:*:*:*:*:*:*:*
ricoh sp_277sfnwx_firmware cpe:2.3:o:ricoh:sp_277sfnwx_firmware:-:*:*:*:*:*:*:*
ricoh sp_325snw_firmware cpe:2.3:o:ricoh:sp_325snw_firmware:-:*:*:*:*:*:*:*
ricoh sp_325sfnw_firmware cpe:2.3:o:ricoh:sp_325sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_377snwx_firmware cpe:2.3:o:ricoh:sp_377snwx_firmware:-:*:*:*:*:*:*:*
ricoh sp_377sfnwx_firmware cpe:2.3:o:ricoh:sp_377sfnwx_firmware:-:*:*:*:*:*:*:*
ricoh sp_212sfnw_firmware cpe:2.3:o:ricoh:sp_212sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_212sfw_firmware cpe:2.3:o:ricoh:sp_212sfw_firmware:-:*:*:*:*:*:*:*
ricoh sp_212snw_firmware cpe:2.3:o:ricoh:sp_212snw_firmware:-:*:*:*:*:*:*:*
ricoh sp_212suw_firmware cpe:2.3:o:ricoh:sp_212suw_firmware:-:*:*:*:*:*:*:*
ricoh sp_213sfnw_firmware cpe:2.3:o:ricoh:sp_213sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_213sfw_firmware cpe:2.3:o:ricoh:sp_213sfw_firmware:-:*:*:*:*:*:*:*
ricoh sp_213snw_firmware cpe:2.3:o:ricoh:sp_213snw_firmware:-:*:*:*:*:*:*:*
ricoh sp_213suw_firmware cpe:2.3:o:ricoh:sp_213suw_firmware:-:*:*:*:*:*:*:*
ricoh sp_311sfnw_firmware cpe:2.3:o:ricoh:sp_311sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_310sfnw_firmware cpe:2.3:o:ricoh:sp_310sfnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_312sfnw_firmware cpe:2.3:o:ricoh:sp_312sfnw_firmware:-:*:*:*:*:*:*:*
ricoh p_310_firmware cpe:2.3:o:ricoh:p_310_firmware:-:*:*:*:*:*:*:*
ricoh p_311_firmware cpe:2.3:o:ricoh:p_311_firmware:-:*:*:*:*:*:*:*
ricoh sp_330dn_firmware cpe:2.3:o:ricoh:sp_330dn_firmware:-:*:*:*:*:*:*:*
ricoh sp_3710dn_firmware cpe:2.3:o:ricoh:sp_3710dn_firmware:-:*:*:*:*:*:*:*
ricoh sp_220nw_firmware cpe:2.3:o:ricoh:sp_220nw_firmware:-:*:*:*:*:*:*:*
ricoh sp_221nw_firmware cpe:2.3:o:ricoh:sp_221nw_firmware:-:*:*:*:*:*:*:*
ricoh sp_277nwx_firmware cpe:2.3:o:ricoh:sp_277nwx_firmware:-:*:*:*:*:*:*:*
ricoh sp_325dnw_firmware cpe:2.3:o:ricoh:sp_325dnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_377dnwx_firmware cpe:2.3:o:ricoh:sp_377dnwx_firmware:-:*:*:*:*:*:*:*
ricoh sp_212nw_firmware cpe:2.3:o:ricoh:sp_212nw_firmware:-:*:*:*:*:*:*:*
ricoh sp_212w_firmware cpe:2.3:o:ricoh:sp_212w_firmware:-:*:*:*:*:*:*:*
ricoh sp_213nw_firmware cpe:2.3:o:ricoh:sp_213nw_firmware:-:*:*:*:*:*:*:*
ricoh sp_213w_firmware cpe:2.3:o:ricoh:sp_213w_firmware:-:*:*:*:*:*:*:*
ricoh sp_311dnw_firmware cpe:2.3:o:ricoh:sp_311dnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_310dnw_firmware cpe:2.3:o:ricoh:sp_310dnw_firmware:-:*:*:*:*:*:*:*
ricoh sp_312dnw_firmware cpe:2.3:o:ricoh:sp_312dnw_firmware:-:*:*:*:*:*:*:*

References for CVE-2021-33945

cvelogic Threat Intelligence