CVE-2026-60011

Summary

Sharp and Toshiba Tec MFPs (multifunction printers) fail to properly authorize requests to directly access certain image data stored to the affected product.

Affected Software

VendorProductVersion RangeStatus
Sharp CorporationSharp MFPssee the information provided by Sharp Corporationaffected
Toshiba Tec CorporationToshiba Tec MFPssee the information provided by Toshiba Tecaffected

Weaknesses

  • CWE-425: Direct request ('Forced Browsing')

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References