Kiteworks MFT
cpe:2.3:a:accellion:kiteworks_managed_file_transfer:*:*:*:*:*:*:*
- < 9.1.0
A privilege escalation vulnerability has been identified in Kiteworks MFT versions prior to 9.1.0. The issue arises from an unfavorable definition of roles and permissions in managing Connections, which could lead to unexpected escalation of privileges for authorized users.
Exploitation of this vulnerability could allow authorized users to gain elevated privileges, potentially leading to unauthorized access or actions within the application.
Users are advised to upgrade Kiteworks MFT to version 9.1.0 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.