CVE-2026-28271 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Kiteworks is a private data network (PDN). Prior to version 9.2.0, a vulnerability in Kiteworks configuration functionality allows bypassing of SSRF protections…
Medium CVSS: 6.5

CVE-2026-28271

Kiteworks is a private data network (PDN). Prior to version 9.2.0, a vulnerability in Kiteworks configuration functionality allows bypassing of SSRF protections through DNS rebinding attacks. Malicious administrators could exploit this to access internal services that should be restricted. Version 9.2.0 contains a patch for the issue.
Vendor
Accellion
Product
Kiteworks
CWE
CWE-350
Yayın Tarihi
2026-02-27 21:16:18
Güncelleme
2026-03-04 19:49:31
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar