Episode Details

Back to Episodes

Enterprise file-sharing gateways exposed by maximum-severity flaw

Season 1 Episode 170 Published 10 hours ago
Description

Daily Cyber News: Enterprise file-sharing gateways exposed by maximum-severity flaw

Organizations using Kiteworks Email Protection Gateway face remote takeover if exposed appliances remain below version 9.4.1. Kiteworks released updates covering 126 vulnerabilities. The most serious is a maximum-severity chain that requires no login or user interaction and can let an attacker execute code before gaining full administrative control of the appliance.

Key context: The wider update also fixes 11 critical weaknesses involving authentication, account takeover and access control.

Additional detail: Nearly 400 Kiteworks instances were tracked as exposed to the internet, although their patch status was unknown.

For more cybersecurity news and the full Daily Cyber newsletter, visit DailyCyber.News.
Cybersecurity training, courses, books, and resources: BareMetalCyber.com.

Topics: cybersecurity news, cybersecurity, cyber risk, Enterprise, file-sharing, gateways, exposed, maximum-severity, flaw.

Listen Now

Love PodBriefly?

If you like Podbriefly.com, please consider donating to support the ongoing development.

Support Us