An HTML Injection vulnerability has been discovered on the RICOH SP 4520DN via the /web/entry/en/address/adrsSetUserWizard.cgi entryNameIn or entryDisplayNameIn parameter.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2019-3504
http://packetstormsecurity.com/files/152790/RICOH-SP-4520DN-Printer-HTML-Injection.html