<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Secure Mail Gateway (&lt; 3.1) - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/secure-mail-gateway--3.1/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Sat, 19 Sep 2026 01:44:03 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/secure-mail-gateway--3.1/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Remote Code Execution Vulnerability in Kaspersky Secure Mail Gateway</title><link>https://feed.craftedsignal.io/briefs/2026-09-kaspersky-smg-rce/</link><pubDate>Sat, 19 Sep 2026 01:44:03 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-kaspersky-smg-rce/</guid><description>A critical remote code execution vulnerability, CVE-2023-41056, in Kaspersky Secure Mail Gateway allows unauthenticated attackers to execute arbitrary code on affected appliances.</description><content:encoded><![CDATA[<p>Kaspersky has released a security advisory addressing a remote code execution vulnerability, identified as CVE-2023-41056, within its Secure Mail Gateway product. The vulnerability affects all versions prior to 3.1. This flaw permits an unauthenticated remote attacker to execute arbitrary code on the underlying appliance, potentially leading to a full system compromise. Given that email gateways are internet-facing and process external traffic, this vulnerability represents a high risk for organizations using this software. Defenders should prioritize updating affected appliances to version 3.1 or later as documented in the Kaspersky security bulletin.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability allows an unauthenticated attacker to gain remote code execution capabilities on the gateway. This could result in unauthorized access to internal email communications, potential interception of sensitive information, or the use of the appliance as a beachhead to pivot into the internal corporate network.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Upgrade all instances of Kaspersky Secure Mail Gateway to version 3.1 or later immediately.</li>
<li>Monitor external-facing network perimeters for anomalous traffic patterns directed at the mail gateway appliance, specifically checking for unconventional payloads in SMTP or management traffic.</li>
<li>Review the official Kaspersky security bulletin (12430#170926) for additional hardening steps or configuration changes recommended by the vendor.</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>remote-code-execution</category><category>network-appliance</category></item></channel></rss>