CVE-2022-45796 | SHARP Multifunction Printer - Command Injection

Command injection vulnerability in nw_interface.html in SHARP multifunction printers (MFPs)'s Digital Full-color Multifunctional System 202 or earlier, 120 or earlier, 600 or earlier, 121 or earlier, 500 or earlier, 402 or earlier, 790 or earlier, and Digital Multifunctional System (Monochrome) 200 or earlier, 211 or earlier, 102 or earlier, 453 or earlier, 400 or earlier, 202 or earlier, 602 or earlier, 500 or earlier, 401 or earlier allows remote attackers to execute arbitrary commands via unspecified vectors.

Published: 2022-12-16 Last update: 2024-11-21 Assigner: [email protected] Source: [email protected]

Conclusion & alert: CVE-2022-45796 is rated High Risk (67.1/100): CVSS Critical severity, with medium exploitation likelihood (EPSS 3.23%). Mandatory action: High exploitation likelihood—assess exposure and prioritize remediation.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2022-45796

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2026-06-15 2.79% 3.23% +0.44%
2 2026-05-25 2.48% 2.79% +0.32%
3 2026-05-06 2.48%

Full EPSS history (24 records total)

Common vulnerability scoring system (CVSS) metrics for CVE-2022-45796

CVSS metrics for this CVE.

Base score Version Severity Vector Exploitability Impact Score source
9.1 3.1 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H Click to expand
Attack vector (AV:N)
Could be attacked over the internet or any normal routed network—not just someone sitting at the machine.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:H)
They need powerful rights—admin, root, or similar—before this pays off.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:C)
Breaking this can reach past the original component and bite other resources—bigger blast radius.
Confidentiality (C:H)
Serious risk that confidential data gets exposed in a big way.
Integrity (I:H)
They could widely tamper with or forge data—trust in the data is badly hurt.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
2.3 6.0 [email protected]
7.2 3.1 HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H Click to expand
Attack vector (AV:N)
Could be attacked over the internet or any normal routed network—not just someone sitting at the machine.
Attack complexity (AC:L)
Once they can reach the bug, pulling it off is straightforward—no weird race conditions or rare setup.
Privileges required (PR:H)
They need powerful rights—admin, root, or similar—before this pays off.
User interaction (UI:N)
Nobody has to click “OK” or open a trap file; it can work without a victim helping.
Scope (S:U)
Damage stays in the same “trust bubble” as the broken component—no big spill into unrelated systems.
Confidentiality (C:H)
Serious risk that confidential data gets exposed in a big way.
Integrity (I:H)
They could widely tamper with or forge data—trust in the data is badly hurt.
Availability (A:H)
Could take the service down hard or make it unusable for people who depend on it.
1.2 5.9 [email protected]

Weakness enumeration for CVE-2022-45796

Affected software / configurations for CVE-2022-45796

Vendor Product Version Raw CPE
sharp bp-30c25_firmware cpe:2.3:o:sharp:bp-30c25_firmware:-:*:*:*:*:*:*:*
sharp bp-30c25t_firmware cpe:2.3:o:sharp:bp-30c25t_firmware:-:*:*:*:*:*:*:*
sharp bp-30c25y_firmware cpe:2.3:o:sharp:bp-30c25y_firmware:-:*:*:*:*:*:*:*
sharp bp-30c25z_firmware cpe:2.3:o:sharp:bp-30c25z_firmware:-:*:*:*:*:*:*:*
sharp bp-30m28_firmware cpe:2.3:o:sharp:bp-30m28_firmware:-:*:*:*:*:*:*:*
sharp bp-30m28t_firmware cpe:2.3:o:sharp:bp-30m28t_firmware:-:*:*:*:*:*:*:*
sharp bp-30m31_firmware cpe:2.3:o:sharp:bp-30m31_firmware:-:*:*:*:*:*:*:*
sharp bp-30m31t_firmware cpe:2.3:o:sharp:bp-30m31t_firmware:-:*:*:*:*:*:*:*
sharp bp-30m35_firmware cpe:2.3:o:sharp:bp-30m35_firmware:-:*:*:*:*:*:*:*
sharp bp-30m35t_firmware cpe:2.3:o:sharp:bp-30m35t_firmware:-:*:*:*:*:*:*:*
sharp bp-50c26_firmware cpe:2.3:o:sharp:bp-50c26_firmware:-:*:*:*:*:*:*:*
sharp bp-50c31_firmware cpe:2.3:o:sharp:bp-50c31_firmware:-:*:*:*:*:*:*:*
sharp bp-50c36_firmware cpe:2.3:o:sharp:bp-50c36_firmware:-:*:*:*:*:*:*:*
sharp bp-50c45_firmware cpe:2.3:o:sharp:bp-50c45_firmware:-:*:*:*:*:*:*:*
sharp bp-50c55_firmware cpe:2.3:o:sharp:bp-50c55_firmware:-:*:*:*:*:*:*:*
sharp bp-50c65_firmware cpe:2.3:o:sharp:bp-50c65_firmware:-:*:*:*:*:*:*:*
sharp bp-50m26_firmware cpe:2.3:o:sharp:bp-50m26_firmware:-:*:*:*:*:*:*:*
sharp bp-50m31_firmware cpe:2.3:o:sharp:bp-50m31_firmware:-:*:*:*:*:*:*:*
sharp bp-50m36_firmware cpe:2.3:o:sharp:bp-50m36_firmware:-:*:*:*:*:*:*:*
sharp bp-50m45_firmware cpe:2.3:o:sharp:bp-50m45_firmware:-:*:*:*:*:*:*:*
sharp bp-50m50_firmware cpe:2.3:o:sharp:bp-50m50_firmware:-:*:*:*:*:*:*:*
sharp bp-50m55_firmware cpe:2.3:o:sharp:bp-50m55_firmware:-:*:*:*:*:*:*:*
sharp bp-55c26_firmware cpe:2.3:o:sharp:bp-55c26_firmware:-:*:*:*:*:*:*:*
sharp bp-60c31_firmware cpe:2.3:o:sharp:bp-60c31_firmware:-:*:*:*:*:*:*:*
sharp bp-60c36_firmware cpe:2.3:o:sharp:bp-60c36_firmware:-:*:*:*:*:*:*:*
sharp bp-60c45_firmware cpe:2.3:o:sharp:bp-60c45_firmware:-:*:*:*:*:*:*:*
sharp bp-70c31_firmware cpe:2.3:o:sharp:bp-70c31_firmware:-:*:*:*:*:*:*:*
sharp bp-70c36_firmware cpe:2.3:o:sharp:bp-70c36_firmware:-:*:*:*:*:*:*:*
sharp bp-70c45_firmware cpe:2.3:o:sharp:bp-70c45_firmware:-:*:*:*:*:*:*:*
sharp bp-70c55_firmware cpe:2.3:o:sharp:bp-70c55_firmware:-:*:*:*:*:*:*:*
sharp bp-70c65_firmware cpe:2.3:o:sharp:bp-70c65_firmware:-:*:*:*:*:*:*:*
sharp bp-70m31_firmware cpe:2.3:o:sharp:bp-70m31_firmware:-:*:*:*:*:*:*:*
sharp bp-70m36_firmware cpe:2.3:o:sharp:bp-70m36_firmware:-:*:*:*:*:*:*:*
sharp bp-70m45_firmware cpe:2.3:o:sharp:bp-70m45_firmware:-:*:*:*:*:*:*:*
sharp bp-70m55_firmware cpe:2.3:o:sharp:bp-70m55_firmware:-:*:*:*:*:*:*:*
sharp bp-70m65_firmware cpe:2.3:o:sharp:bp-70m65_firmware:-:*:*:*:*:*:*:*
sharp bp-70m75_firmware cpe:2.3:o:sharp:bp-70m75_firmware:-:*:*:*:*:*:*:*
sharp bp-70m90_firmware cpe:2.3:o:sharp:bp-70m90_firmware:-:*:*:*:*:*:*:*
sharp mx-2630n_firmware cpe:2.3:o:sharp:mx-2630n_firmware:-:*:*:*:*:*:*:*
sharp mx-2651_firmware cpe:2.3:o:sharp:mx-2651_firmware:-:*:*:*:*:*:*:*
sharp mx-3050n_firmware cpe:2.3:o:sharp:mx-3050n_firmware:-:*:*:*:*:*:*:*
sharp mx-3050n_a_firmware cpe:2.3:o:sharp:mx-3050n_a_firmware:-:*:*:*:*:*:*:*
sharp mx-3050v_firmware cpe:2.3:o:sharp:mx-3050v_firmware:-:*:*:*:*:*:*:*
sharp mx-3050v_a_firmware cpe:2.3:o:sharp:mx-3050v_a_firmware:-:*:*:*:*:*:*:*
sharp mx-3051_firmware cpe:2.3:o:sharp:mx-3051_firmware:-:*:*:*:*:*:*:*
sharp mx-3060n_firmware cpe:2.3:o:sharp:mx-3060n_firmware:-:*:*:*:*:*:*:*
sharp mx-3060v_firmware cpe:2.3:o:sharp:mx-3060v_firmware:-:*:*:*:*:*:*:*
sharp mx-3061_firmware cpe:2.3:o:sharp:mx-3061_firmware:-:*:*:*:*:*:*:*
sharp mx-3061s_firmware cpe:2.3:o:sharp:mx-3061s_firmware:-:*:*:*:*:*:*:*
sharp mx-3070n_firmware cpe:2.3:o:sharp:mx-3070n_firmware:-:*:*:*:*:*:*:*
sharp mx-3070n_a_firmware cpe:2.3:o:sharp:mx-3070n_a_firmware:-:*:*:*:*:*:*:*
sharp mx-3070v_firmware cpe:2.3:o:sharp:mx-3070v_firmware:-:*:*:*:*:*:*:*
sharp mx-3070v_a_firmware cpe:2.3:o:sharp:mx-3070v_a_firmware:-:*:*:*:*:*:*:*
sharp mx-3071_firmware cpe:2.3:o:sharp:mx-3071_firmware:-:*:*:*:*:*:*:*
sharp mx-3071s_firmware cpe:2.3:o:sharp:mx-3071s_firmware:-:*:*:*:*:*:*:*
sharp mx-3550n_firmware cpe:2.3:o:sharp:mx-3550n_firmware:-:*:*:*:*:*:*:*
sharp mx-3550v_firmware cpe:2.3:o:sharp:mx-3550v_firmware:-:*:*:*:*:*:*:*
sharp mx-3551_firmware cpe:2.3:o:sharp:mx-3551_firmware:-:*:*:*:*:*:*:*
sharp mx-3560n_firmware cpe:2.3:o:sharp:mx-3560n_firmware:-:*:*:*:*:*:*:*
sharp mx-3560v_firmware cpe:2.3:o:sharp:mx-3560v_firmware:-:*:*:*:*:*:*:*
sharp mx-3561_firmware cpe:2.3:o:sharp:mx-3561_firmware:-:*:*:*:*:*:*:*
sharp mx-3561s_firmware cpe:2.3:o:sharp:mx-3561s_firmware:-:*:*:*:*:*:*:*
sharp mx-3570n_firmware cpe:2.3:o:sharp:mx-3570n_firmware:-:*:*:*:*:*:*:*
sharp mx-3570v_firmware cpe:2.3:o:sharp:mx-3570v_firmware:-:*:*:*:*:*:*:*
sharp mx-3571_firmware cpe:2.3:o:sharp:mx-3571_firmware:-:*:*:*:*:*:*:*
sharp mx-3571s_firmware cpe:2.3:o:sharp:mx-3571s_firmware:-:*:*:*:*:*:*:*
sharp mx-4050n_firmware cpe:2.3:o:sharp:mx-4050n_firmware:-:*:*:*:*:*:*:*
sharp mx-4050v_firmware cpe:2.3:o:sharp:mx-4050v_firmware:-:*:*:*:*:*:*:*
sharp mx-4051_firmware cpe:2.3:o:sharp:mx-4051_firmware:-:*:*:*:*:*:*:*
sharp mx-4060n_firmware cpe:2.3:o:sharp:mx-4060n_firmware:-:*:*:*:*:*:*:*
sharp mx-4060v_firmware cpe:2.3:o:sharp:mx-4060v_firmware:-:*:*:*:*:*:*:*
sharp mx-4061_firmware cpe:2.3:o:sharp:mx-4061_firmware:-:*:*:*:*:*:*:*
sharp mx-4061s_firmware cpe:2.3:o:sharp:mx-4061s_firmware:-:*:*:*:*:*:*:*
sharp mx-4070n_firmware cpe:2.3:o:sharp:mx-4070n_firmware:-:*:*:*:*:*:*:*
sharp mx-4070n_a_firmware cpe:2.3:o:sharp:mx-4070n_a_firmware:-:*:*:*:*:*:*:*
sharp mx-4070v_firmware cpe:2.3:o:sharp:mx-4070v_firmware:-:*:*:*:*:*:*:*
sharp mx-4070v_a_firmware cpe:2.3:o:sharp:mx-4070v_a_firmware:-:*:*:*:*:*:*:*
sharp mx-4071_firmware cpe:2.3:o:sharp:mx-4071_firmware:-:*:*:*:*:*:*:*
sharp mx-4071s_firmware cpe:2.3:o:sharp:mx-4071s_firmware:-:*:*:*:*:*:*:*
sharp mx-5050n_firmware cpe:2.3:o:sharp:mx-5050n_firmware:-:*:*:*:*:*:*:*

References for CVE-2022-45796

cvelogic Threat Intelligence