Article

    Cyber News / Article / Vulnerabilities in proCertum SmartSign software

    Vulnerabilities in proCertum SmartSign software
    CE
    CERT Polska-2026-07-27

    Vulnerabilities in proCertum SmartSign software

    CERT Polska has received a report about vulnerabilities in proCertum SmartSign software and participated in coordination of their disclosure.

    The vulnerabilityCVE-2026-57916: proCertum SmartSign opens Certificate Practice Statement (CPS) URI without schema validation. An attacker can prepare arbitrary certificate with CPS URI pointing to a local executable file or any URL, sign a document with it, and send it to the victim. When the victim opens the document in the application, the specified file will be executed (or webpage will be opened).

    The vulnerabilityCVE-2026-57917: proCertum SmartSign parses external XML entities from arbitrary crafted signature files, enabling SSRF and potentially allowing the reading of local files, depending on the parser's configuration. The XML External Entity (XXE) vulnerability is triggered simply by previewing a file in the file selection window, before the victim clicks “Open”.

    These issues were fixed in version 9.4.3.90.

    We thank Mariusz Maik for the responsible vulnerability report.

    Original source