Known Vulnerabilities for Kiteworks Appliance by Accellion
Listed below are 3 of the newest known vulnerabilities associated with "Kiteworks Appliance" by "Accellion".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102142 json | A system notification template on the Kiteworks appliance was rendered by a template engine that evaluated expressions contai... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102135 json | On a Kiteworks Email Protection Gateway cluster with database replication enabled, a party trusted by the cluster could submi... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102133 json | An optional, separately licensed repository-connector feature in Kiteworks Core did not neutralize special characters in a us... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102125 json | The sandbox that isolates document conversion on a Kiteworks appliance did not fully confine the code running inside it. Code... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102124 json | A Kiteworks appliance setup interface did not enforce authentication once the appliance had completed initial configuration. ... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102123 json | A Kiteworks appliance setup interface did not confine a user-supplied file path to its intended directory, which could allow ... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102118 json | A local privilege escalation vulnerability in Kiteworks could have allowed an attacker with an existing shell under a low-pri... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102114 json | A command injection vulnerability in Kiteworks could allow a high-privileged authenticated administrator to execute arbitrary... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102113 json | A privilege escalation vulnerability in Kiteworks could allow an attacker who has already obtained code execution as an unpri... | Not Provided | 2026-09-30 | 2026-10-01 |
| CVE-2026-102112 json | A privilege escalation vulnerability in Kiteworks could allow an attacker who has already obtained code execution as an unpri... | Not Provided | 2026-09-30 | 2026-10-01 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Accellion | Kiteworks Appliance | kw2016.03.00 |