← Back

CVE-2026-29092

nvd nist
Published: Mar 25, 2026Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

Kiteworks is a private data network (PDN). Prior to version 9.2.1, a vulnerability in Kiteworks Email Protection Gateway session management allows blocked users to maintain active sessions after their account is disabled. This could allow unauthorized access to continue until the session naturally expires. Upgrade Kiteworks to version 9.2.1 or later to receive a patch.

Affected (1)

Products: Accellion: Kiteworks
1 product
Kiteworks
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 9.2.1

References (1)

Timeline

No history available yet.