CNNVD-202511-3043 Information

CNNVD ID

CNNVD-202511-3043

CVE-2025-53939

  • CNNVD Published: 2025-11-29

Description (Chinese)

Kiteworks是美国Kiteworks公司的一个安全私有网络数据软件。 Kiteworks 9.1.0之前版本存在输入验证错误漏洞,该漏洞源于输入验证不当,可能导致共享文件夹权限提升。

Description (English)

Kiteworks is a secure private network data software for the United States company Kiteworks. There was an input authentication error gap in the pre-Kiteworks 9.1.0 version, which resulted from inappropriate input authentication, which could lead to increased access to shared folders.

Hazard Level

High

Vulnerability Type

输入验证错误

Affected Vendor

Kiteworks

Published

2025-11-29

Last Modified

2026-02-24

References

https://github.com/kiteworks/security-advisories/security/advisories/GHSA-hpf5-6376-2565 https://access.redhat.com/security/cve/cve-2025-53939

Patch

https://www.kiteworks.com/

Share on: