CVE-2026-102112: Kiteworks Core Local Privilege Escalation
A privilege escalation vulnerability in Kiteworks could allow an attacker who has already obtained code execution as an unprivileged backend service account on the appliance to escalate to root and run arbitrary commands with the highest privileges. Exploitation requires existing local access to that service account.
Affected Software
Event History
Frequently Asked Questions
Who is exposed to exploitation?
Only an attacker who has already obtained local code execution as an unprivileged backend service account on a Kiteworks appliance can exploit this issue. It is not described as remotely exploitable without that existing access.
What level of access can exploitation provide?
Successful exploitation can escalate the unprivileged service account to root. The attacker can then run arbitrary commands with the appliance's highest privileges.
Does exploitation require user interaction or elevated starting privileges?
No user interaction is required, and the attacker does not need to begin with elevated privileges. However, they must already have local access and code execution as the affected unprivileged backend service account.