CVE-2026-57916
Received Received - Intake

proCertum SmartSign CPS URI Schema Validation Bypass

Vulnerability report for CVE-2026-57916, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-27

Last updated on: 2026-07-27

Assigner: CERT.PL

Description

proCertum SmartSign opens Certificate Practice Statement (CPS) URI without schema validation. An attacker can prepare arbitrary certificate with CPS URI pointing to a local executable file or any URL, sign a document with it, and send it to the victim.Β When the victim opens the document in the application, the specified file will be executed (or webpage will be opened). This issue was fixed in version 9.4.3.90.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-27
Last Modified
2026-07-27
Generated
2026-07-27
AI Q&A
2026-07-27
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
asseco procertum_smartsign 9.4.3.90
asseco procertum_smartsign to 9.4.3.90 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-73 The product allows user input to control or influence paths or file names that are used in filesystem operations.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in proCertum SmartSign allows an attacker to craft a malicious certificate with a Certificate Practice Statement (CPS) URI pointing to a local executable file or any URL. When a victim opens a document signed with this certificate in the application, the specified file executes or the URL opens. The issue occurs because the application does not validate the URI schema properly.

Detection Guidance

Check the installed version of proCertum SmartSign. If it is below 9.4.3.90, the system is vulnerable. Review documents opened in the application for CPS URIs pointing to local executables or suspicious URLs.

Impact Analysis

If exploited, this vulnerability could allow an attacker to run arbitrary code on your system or open malicious websites when you open a signed document. This could lead to data theft, malware installation, or unauthorized access to your system. Users of proCertum SmartSign versions below 9.4.3.90 are affected.

Compliance Impact

This vulnerability could potentially violate compliance with standards like GDPR and HIPAA by enabling unauthorized execution of local files or opening arbitrary URLs through manipulated documents. If exploited, it may lead to unauthorized data access, modification, or disclosure, which are key concerns under these regulations.

Mitigation Strategies

Update proCertum SmartSign to version 9.4.3.90 or later. Avoid opening documents from untrusted sources until the update is applied.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-57916. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart