Description
Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to a path traversal weakness in an administrative import function allowed an authenticated administrator to write files to arbitrary locations on the server. This could potentially be leveraged to execute arbitrary code on the underlying system.
Published: 2026-09-30
Score: 7.2 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Patch immediately
AI Analysis

Impact

Kiteworks Email Protection Gateway before version 9.5.0 contains a path traversal flaw in an administrative import function that allows an authenticated administrator to write files to arbitrary locations on the server. The vulnerability could enable an attacker to place and execute arbitrary code on the underlying system, leading to full compromise of the affected host.

Affected Systems

The flaw affects installations of Kiteworks Email Protection Gateway whose version is older than 9.5.0. No other vendors or product variants are listed as impacted.

Risk and Exploitability

The CVSS score of 7.2 indicates high severity. No EPSS score is available, so the exact likelihood of exploitation is unknown, but the vulnerability is not yet listed in CISA’s KEV catalog. Exploitation requires authenticated administrative access; once logged in, the attacker can use the import function to write arbitrary files, potentially dropping web shells or modifying critical configuration files. The attack vector is limited to privileged users, reducing exposure to external attackers who cannot acquire administrator credentials.

Generated by OpenCVE AI on September 30, 2026 at 22:34 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update Kiteworks Email Protection Gateway to version 9.5.0 or later.
  • Restrict access to the administrative interface to trusted internal IP ranges and enforce multi‑factor authentication for all administrator accounts.
  • Disable the import functionality if it is not required for business operations, and implement file integrity monitoring on the application directories to detect unauthorized writes.

Generated by OpenCVE AI on September 30, 2026 at 22:34 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 01 Oct 2026 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Kiteworks
Kiteworks kiteworks Email Protection Gateway
Vendors & Products Kiteworks
Kiteworks kiteworks Email Protection Gateway

Thu, 01 Oct 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 30 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Description Kiteworks Email Protection Gateway before version 9.5.0 is vulnerable to a path traversal weakness in an administrative import function allowed an authenticated administrator to write files to arbitrary locations on the server. This could potentially be leveraged to execute arbitrary code on the underlying system.
Title Kiteworks Email Protection Gateway path traversal
Weaknesses CWE-22
References
Metrics cvssV3_1

{'score': 7.2, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Kiteworks Kiteworks Email Protection Gateway
cve-icon MITRE

Status: PUBLISHED

Assigner: cisa-cg

Published:

Updated: 2026-10-01T13:37:09.618Z

Reserved: 2026-09-28T17:39:13.560Z

Link: CVE-2026-102089

cve-icon Vulnrichment

Updated: 2026-10-01T13:32:38.366Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-30T21:16:55.350

Modified: 2026-10-01T14:17:12.680

Link: CVE-2026-102089

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-01T15:30:08Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')