Description
Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and leave them uncleared. They may be accessed later by other users.
Published: 2026-08-03
Score: 2.4 Low
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability causes Sharp and Toshiba Tec multifunction printers to retain cached data after printing sessions. Because the caches are not cleared, subsequent users on the same device can read these files, potentially exposing confidential documents. This behavior aligns with CWE-459, indicating insecure removal of data from internal storage.

Affected Systems

Sharp Corporation Sharp MFPs and Toshiba Tec Corporation Toshiba Tec MFPs are affected. No specific model or firmware version details are provided in the advisory, so the issue may apply broadly across current device lines.

Risk and Exploitability

The CVSS score of 2.4 indicates a low severity risk and the EPSS score is unavailable, suggesting limited exploitation likelihood. As the flaw requires physical or local network access to the device, only users with direct access can exploit it. The vulnerability is not listed in the CISA Known Exploited Vulnerabilities catalog.

Generated by OpenCVE AI on August 4, 2026 at 10:30 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Contact Sharp Corporation and Toshiba Tec to obtain a firmware update that clears internal caches after printing.
  • If an update is not available, reconfigure the MFP to automatically delete all cached print data upon job completion.
  • Restrict access to the device by ensuring only authorized users can print or retrieve documents, and disable user log‑in features if not required.

Generated by OpenCVE AI on August 4, 2026 at 10:30 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 10:45:00 +0000

Type Values Removed Values Added
First Time appeared Sharp Corporation
Sharp Corporation sharp Mfps
Toshiba Tec Corporation
Toshiba Tec Corporation toshiba Tec Mfps
Vendors & Products Sharp Corporation
Sharp Corporation sharp Mfps
Toshiba Tec Corporation
Toshiba Tec Corporation toshiba Tec Mfps

Tue, 04 Aug 2026 11:00:00 +0000

Type Values Removed Values Added
Title Internal Cache Data Leakage in Sharp and Toshiba Tec Multifunction Printers

Mon, 03 Aug 2026 12:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 03 Aug 2026 09:00:00 +0000

Type Values Removed Values Added
Description Sharp and Toshiba Tec MFPs (multifunction printers) caches data internally when printing, and leave them uncleared. They may be accessed later by other users.
Weaknesses CWE-459
References
Metrics cvssV3_1

{'score': 2.4, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'}

cvssV4_0

{'score': 2.4, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Sharp Corporation Sharp Mfps
Toshiba Tec Corporation Toshiba Tec Mfps
cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2026-08-03T11:12:38.265Z

Reserved: 2026-07-21T08:39:02.246Z

Link: CVE-2026-63545

cve-icon Vulnrichment

Updated: 2026-08-03T11:12:28.619Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-03T09:17:06.150

Modified: 2026-08-03T17:40:27.300

Link: CVE-2026-63545

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T10:22:20Z

Weaknesses