Path Traversal Flaw Found in FUJIFILM and Sharp Printers
A security vulnerability in multifunction printer Web management interfaces allows unauthorized access to sensitive data.
Updated on Sept. 30, 2026 in Cybersecurity

Live Poll
Do you prioritize installing firmware updates for connected devices in your home?
FUJIFILM Business Innovation and Sharp Corporation have disclosed a path traversal vulnerability affecting their multifunction printers. This flaw allows unauthorized parties to extract sensitive information by sending specially crafted requests through the device's Web management interface.
Why it matters
The vulnerability poses risks to corporate and office environments where multifunction printers often bridge internal networks and external web management tools. It highlights the security surface area created by administrative interfaces on networked hardware.
The vulnerability identified under JVNVU#90160989 is a path traversal flaw, which occurs when software does not properly sanitize user-supplied input used to construct file paths. This allows an attacker to bypass directory restrictions and access files outside the intended web root.
The players
FUJIFILM Business Innovation Corp
A subsidiary of FUJIFILM Holdings that specializes in document solutions, office printing systems, and managed print services.
Sharp Corporation
A diversified electronics manufacturer known for its office equipment division and advanced display technology.
JPCERT/CC
A Japanese non-profit organization that coordinates with vendors and security researchers to manage the disclosure of software vulnerabilities.
The details
Attackers exploit the vulnerability by sending a specially crafted request to the device's Web management interface. The printer's firmware processes this input without adequate validation, enabling the execution of unauthorized directory operations. The flaw was identified and coordinated through JPCERT/CC, an organization that facilitates the reporting and mitigation of software vulnerabilities in Japan.
Timeline
September 30, 2026: Vulnerability notification published on JVN.
The Tech Race
This disclosure follows the standard coordination patterns mandated by the JVN vulnerability disclosure framework. It highlights the ongoing industry-wide challenge of securing the administrative interfaces of legacy and modern networked office peripherals.
Users should consult the official support portals for FUJIFILM Business Innovation and Sharp to apply the recommended firmware updates. Where updates are not immediately deployable, IT administrators should apply the workarounds provided by the respective developers to secure management interfaces.
The takeaway
The security of multifunction printers is often overlooked, but their web interfaces provide a direct, frequently unpatched point of entry into business networks. Administrators should verify the status of their fleet against the JVNVU#90160989 identifier to ensure they are running the latest firmware.
Further reading
For broader trends in networked hardware vulnerabilities, visit Cybersecurity.
Source note: This article includes information reported by Jvn.
Live Poll
Do you prioritize installing firmware updates for connected devices in your home?







