CVE-2026-62416
5.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Summary
Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, require no authentication and accept files unlimitedly. When the affected products are used with the initial configuration, anyone can connect to them without authentication and upload files unlimitedly. This may cause a denial-of-service (DoS) condition on the PC. Furthermore, if a malicious file is uploaded, a PC user may be tricked to execute the file to attack other entities from that PC.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Sharp Corporation | Network Scanner Tool Lite | 0 <= V2.0.13.3 | affected |
| Sharp Corporation | Network Scanner Tool (Bundled software for Sharpdesk) | 0 <= V6.1.1.8 | affected |
Weaknesses
- CWE-1188: Initialization of a resource with an insecure default
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: yes
- Technical Impact: partial
References
- https://global.sharp/corporate/info/product-security/advisory-list/2026-005/
- https://corporate.jp.sharp/info/product-security/advisory-list/2026-005/
- https://jvn.jp/en/vu/JVNVU92540957/
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.