CVE-2026-62416: Medium severity Sharp Corporation Network Scanner Tool vulnerability
Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, require no authentication and accept files unlimitedly. When the affected products are used with the initial configuration, anyone can connect to them without authentication and upload files unlimitedly. This may cause a denial-of-service (DoS) condition on the PC. Furthermore, if a malicious file is uploaded, a PC user may be tricked to execute the file to attack other entities from that PC.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Change the initial configuration of Sharp Corporation’s “Network Scanner Tool” and “Network Scanner Tool Lite” so they require authentication (instead of no authentication) and restrict how files can be uploaded (instead of accepting unlimited files) to prevent unauthorized upload/DoS.
Event History
Frequently Asked Questions
What is the severity of CVE-2026-62416?
The severity of CVE-2026-62416 is medium, rated at 5.3.
How do I fix CVE-2026-62416?
To mitigate CVE-2026-62416, secure the configuration of the Network Scanner Tool by enabling authentication to restrict access.
What are the risks associated with CVE-2026-62416?
CVE-2026-62416 poses risks such as unauthorized access and file uploads, potentially allowing attacks on the network.
Which products are affected by CVE-2026-62416?
The affected products include the Sharp Corporation Network Scanner Tool and Network Scanner Tool Lite.
Can CVE-2026-62416 be exploited remotely?
Yes, CVE-2026-62416 can be exploited remotely since it allows unauthenticated connections.