Description

Network Scanner Tool and Network Scanner Tool Lite provided by Sharp Corporation, with the initial configuration, require no authentication and accept files unlimitedly. When the affected products are used with the initial configuration, anyone can connect to them without authentication and upload files unlimitedly. This may cause a denial-of-service (DoS) condition on the PC. Furthermore, if a malicious file is uploaded, a PC user may be tricked to execute the file to attack other entities from that PC.

Severity (CVSS)

Base score6.9
SeverityMedium
VersionCVSS 4.0
VectorCVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Provided byCNA

Weaknesses

  • CWE-1188 — Initialization of a resource with an insecure default

Affected products

VendorProductVersions
Sharp CorporationNetwork Scanner Tool Lite0 to <=V2.0.13.3
Sharp CorporationNetwork Scanner Tool (Bundled software for Sharpdesk)0 to <=V6.1.1.8

References

Authoritative sources

This page is a snapshot. For the latest enrichment and updates, view the record on CVE.org or the NVD.

Generated from the official CVE List on 04 Aug 2026 07:02 UTC.