CVE-2026-62416

Summary

Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, require no authentication and accept files unlimitedly. When the affected products are used with the initial configuration, anyone can connect to them without authentication and upload files unlimitedly. This may cause a denial-of-service (DoS) condition on the PC. Furthermore, if a malicious file is uploaded, a PC user may be tricked to execute the file to attack other entities from that PC.

Affected Software

VendorProductVersion RangeStatus
Sharp CorporationNetwork Scanner Tool Lite0 <= V2.0.13.3affected
Sharp CorporationNetwork Scanner Tool (Bundled software for Sharpdesk)0 <= V6.1.1.8affected

Weaknesses

  • CWE-1188: Initialization of a resource with an insecure default

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References