Vulnerabilities
Vulnerable Software
Accellion:  >> Kiteworks  >> 7.4.0  Security Vulnerabilities
Kiteworks is a private data network (PDN). Prior to version 9.1.0, improper input validation when managing roles of a shared folder could lead to unexpectedly elevate another user's permissions on the share. This issue has been patched in version 9.1.0.
CVSS Score
6.3
EPSS Score
0.001
Published
2025-11-29
Authentication Bypass vulnerability in Accellion kiteworks before 2017.01.00 allows remote attackers to execute certain API calls on behalf of a web user using a gathered token via a POST request to /oauth/token.
CVSS Score
6.5
EPSS Score
0.003
Published
2018-05-24


Contact Us

Shodan ® - All rights reserved