CVE-2026-62416 PUBLISHED

Assigner: jpcert
Reserved: 14.07.2026 Published: 03.08.2026 Updated: 03.08.2026

Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, require no authentication and accept files unlimitedly. When the affected products are used with the initial configuration, anyone can connect to them without authentication and upload files unlimitedly. This may cause a denial-of-service (DoS) condition on the PC. Furthermore, if a malicious file is uploaded, a PC user may be tricked to execute the file to attack other entities from that PC.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
CVSS Score: 6.9

Product Status

Vendor Sharp Corporation
Product Network Scanner Tool Lite
Versions Default: unaffected
  • affected from 0 to V2.0.13.3 (incl.)
Vendor Sharp Corporation
Product Network Scanner Tool (Bundled software for Sharpdesk)
Versions Default: unaffected
  • affected from 0 to V6.1.1.8 (incl.)

References

Problem Types