CVE-2024-58388: Sharp Multifunction Printers Local File Inclusion via installed_emanual_down.html

Published Oct 1, 2026
·
Updated

Sharp (and Toshiba Tec rebranded) multifunction printers contain an unauthenticated local file inclusion vulnerability that allows remote attackers to read arbitrary files by manipulating the path parameter in the installedemanualdown.html endpoint. Attackers can supply directory traversal sequences such as path=/manual/../../../<path> to access files outside the intended manual directory, including /etc/passwd, coredump files containing credentials, and system configuration files. Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.

Affected Software

2 affected components
SHARP Multifunction Printers
Toshiba Tec Multifunction Printers

Event History

Oct 1, 2026
CVE Published
via MITRE·02:24 PM
Data Sourced
via MITRE·02:24 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:17 PM
DescriptionSeverityWeakness
Jun 5, 58720
Event
via NVD·12:04 PM

Frequently Asked Questions

1

Which devices are exposed to this issue?

Sharp multifunction printers and Toshiba Tec rebranded multifunction printers are identified as affected. Exposure requires that the installed_emanual_down.html endpoint be reachable remotely.

2

Does exploitation require authentication or user interaction?

No. The vulnerability is unauthenticated and can be exploited remotely without user interaction by manipulating the endpoint's path parameter.

3

What could an attacker obtain through successful exploitation?

An attacker can read arbitrary files outside the intended manual directory. Examples include /etc/passwd, system configuration files, and coredump files that may contain credentials.

4

How can defenders look for exploitation attempts?

Review requests to installed_emanual_down.html for traversal patterns in the path parameter, such as /manual/../../../. Exploitation evidence was first observed by the Shadowserver Foundation on 2024-07-30.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203