Enterprise file-sharing gateways exposed by maximum-severity flaw

Enterprise file-sharing gateways exposed by maximum-severity flaw. Organizations using Kiteworks Email Protection Gateway face remote takeover if exposed appliances remain below version 9.4.1.

Daily Cyber News: Enterprise file-sharing gateways exposed by maximum-severity flaw

Organizations using Kiteworks Email Protection Gateway face remote takeover if exposed appliances remain below version 9.4.1. Kiteworks released updates covering 126 vulnerabilities. The most serious is a maximum-severity chain that requires no login or user interaction and can let an attacker execute code before gaining full administrative control of the appliance.

Key context: The wider update also fixes 11 critical weaknesses involving authentication, account takeover and access control.

Additional detail: Nearly 400 Kiteworks instances were tracked as exposed to the internet, although their patch status was unknown.

For more cybersecurity news and the full Daily Cyber newsletter, visit DailyCyber.News.
Cybersecurity training, courses, books, and resources: BareMetalCyber.com.

Topics: cybersecurity news, cybersecurity, cyber risk, Enterprise, file-sharing, gateways, exposed, maximum-severity, flaw.

Enterprise file-sharing gateways exposed by maximum-severity flaw
Broadcast by