Impact
A flaw in Keyfactor SignServer versions prior to 7.6.0 lets an administrator set the ATTRIBUTESFILE, KEYSTOREPATH, and TRUSTSTOREPATH configuration properties to any file system path without restriction. When these properties reference a file that is readable by the application server process, the system returns error messages that reveal whether the file exists, enabling the attacker to enumerate local files. The vulnerability is an information disclosure and file enumeration bug rather than a denial‑of‑service or privilege escalation.
Affected Systems
Keyfactor SignServer installations released before 7.6.0 are affected; the CVE does not list more granular product or version data.
Risk and Exploitability
The CVSS score of 2.3 indicates low severity, and the EPSS score of less than 1% reflects a very low exploitation probability. The issue is not present in the CISA KEV catalog. Exploitation requires administrator access to the SignServer configuration and does not provide remote code execution or other broader attacks. No publicly available exploits are known.
OpenCVE Enrichment