CVE-2026-63563
33Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 6.9epss 0.4%
from disclosure to weapon0 days
Published on NVDAug 3
1st PoCJul 31
exploitation probability
0.4%top 65% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Sharp and Toshiba Tec MFPs (multifunction printers) for a certain market have been shipped with the user authentication feature disabled in the initial configuration. When used with the initial configuration, the address book editing and a range of features related to Document Filing can be accessed without user authentication.
Products intended for the Japanese market are not affected.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N
public PoCs found — 1
githubgithub.com/redr0nin/CVE-2026-63563★ 0⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
https://corporate.jp.sharp/info/product-security/advisory-list/2026-004/https://global.sharp/corporate/info/product-security/advisory-list/2026-004/https://jvn.jp/en/vu/JVNVU98759887/https://www.toshibatec.co.jp/news/info/20260731-01.htmlhttps://www.toshibatec.com/information/20260731_01.html