Skip to content
Noroxi

kerio records

44 published records for vendor kerio.

All records

44 records
  • Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and earlier allows remote attackers to e

    HighCVSS 7.5WeaponizedEPSS 69%

    kerio · personal firewall 2May 12, 2003

  • Unspecified vulnerability in the attachment filter in Kerio MailServer before 6.4.1 has unknown impact and remote attack vectors.

    CriticalCVSS 10.0No exploitEPSS 2%

    kerio · kerio mailserverJul 25, 2007

  • Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related to a "potential sec

    CriticalCVSS 10.0No exploitEPSS 2%

    kerio · kerio mailserverDec 31, 2004

  • Unspecified vulnerability in the AVG plugin in Kerio MailServer before 6.5.0 has unspecified impact via unknown remote attack vectors relate

    CriticalCVSS 10.0No exploitEPSS 2%

    kerio · avg pluginFeb 20, 2008

  • CVE-2003-0487
    33Monitor

    Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and possibly execute arbit

    HighCVSS 7.5Proof of conceptEPSS 11%

    kerio · kerio mailserverAug 7, 2003

  • CVE-2006-1158
    32Monitor

    Kerio MailServer before 6.1.3 Patch 1 allows remote attackers to cause a denial of service (application crash) via a crafted IMAP LOGIN comm

    HighCVSS 7.8No exploitEPSS 2%

    kerio · kerio mailserverMar 12, 2006

  • CVE-2005-4425
    32Monitor

    Unspecified vulnerability in Kerio WinRoute Firewall before 6.1.3 allows remote attackers to cause a denial of service (crash) via certain R

    HighCVSS 7.8No exploitEPSS 2%

    kerio · winroute firewallDec 20, 2005

  • CVE-2008-0858
    31Monitor

    Buffer overflow in the Visnetic anti-virus plugin in Kerio MailServer before 6.5.0 might allow remote attackers to execute arbitrary code vi

    HighCVSS 7.5No exploitEPSS 4%

    kerio · kerio mailserverFeb 20, 2008

  • CVE-2003-0219
    31Monitor

    Kerio Personal Firewall (KPF) 2.1.4 and earlier allows remote attackers to execute administrator commands by sniffing packets from a valid s

    HighCVSS 7.5No exploitEPSS 4%

    kerio · personal firewall 2May 12, 2003

  • CVE-2005-1062
    31Monitor

    The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and MailServer up to 6.0.8 allo

    HighCVSS 7.5No exploitEPSS 3%

    kerio · kerio mailserverMay 2, 2005

  • CVE-2003-1491
    31Monitor

    Kerio Personal Firewall (KPF) 2.1.4 has a default rule to accept incoming packets from DNS (UDP port 53), which allows remote attackers to b

    HighCVSS 7.5No exploitEPSS 2%

    kerio · personal firewallDec 31, 2003

  • CVE-2005-4157
    31Monitor

    Unspecified vulnerability in Kerio WinRoute Firewall before 6.1.3 allows remote attackers to authenticate to the service using an account th

    HighCVSS 7.5No exploitEPSS 2%

    kerio · winroute firewallDec 10, 2005

  • CVE-2002-1434
    28Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in the Web mail module of Kerio MailServer 5.0 allow remote attackers to execute HTML sc

    MediumCVSS 6.8Proof of conceptEPSS 4%

    kerio · kerio mailserverApr 11, 2003

  • CVE-2011-1506
    28Monitor

    The STARTTLS implementation in Kerio Connect 7.1.4 build 2985 and MailServer 6.x does not properly restrict I/O buffering, which allows man-

    MediumCVSS 6.8No exploitEPSS 2%

    kerio · connectMar 22, 2011

  • CVE-2004-2329
    28Monitor

    Kerio Personal Firewall (KPF) 2.1.5 allows local users to execute arbitrary code with SYSTEM privileges via the Load button in the Firewall

    HighCVSS 7.2No exploitEPSS 1%

    kerio · personal firewallDec 31, 2004

  • CVE-2014-3857
    27Monitor

    Multiple SQL injection vulnerabilities in Kerio Control Statistics in Kerio Control (formerly WinRoute Firewall) before 8.3.2 allow remote a

    MediumCVSS 6.5Proof of conceptEPSS 2%

    kerio · controlJul 3, 2014

  • CVE-2004-2483
    26Monitor

    Kerio WinRoute Firewall before 6.0.9 uses information from PTR queries in response to A queries, which allows remote attackers to poison the

    MediumCVSS 6.4No exploitEPSS 2%

    kerio · winroute firewallDec 31, 2004

  • CVE-2006-2203
    25Monitor

    Unspecified vulnerability in Kerio MailServer before 6.1.4 has unknown impact and remote attack vectors related to a "possible bypass of att

    MediumCVSS 6.4No exploitEPSS 1%

    kerio · kerio mailserverMay 5, 2006

  • CVE-2006-6131
    24Monitor

    Untrusted search path vulnerability in (1) WSAdminServer and (2) WSWebServer in Kerio WebSTAR (4D WebSTAR Server Suite) 5.4.2 and earlier al

    MediumCVSS 6.2Proof of conceptEPSS 1%

    kerio · webstarNov 27, 2006

  • CVE-2003-0488
    22Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in Kerio MailServer 5.6.3 allow remote attackers to insert arbitrary web script via (1)

    MediumCVSS 5.1Proof of conceptEPSS 7%

    kerio · kerio mailserverAug 7, 2003

  • CVE-2004-1109
    21Monitor

    The FWDRV.SYS driver in Kerio Personal Firewall 4.1.1 and earlier allows remote attackers to cause a denial of service (CPU consumption and

    MediumCVSS 5.0Proof of conceptEPSS 3%

    kerio · personal firewallJan 10, 2005

  • CVE-2006-2267
    21Monitor

    Kerio WinRoute Firewall before 6.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors in the "em

    MediumCVSS 5.0No exploitEPSS 3%

    kerio · winroute firewallMay 9, 2006

  • CVE-2006-0335
    21Monitor

    Multiple unspecified vulnerabilities in Kerio WinRoute Firewall before 6.1.4 Patch 1 allow remote attackers to cause a denial of service via

    MediumCVSS 5.0No exploitEPSS 3%

    kerio · winroute firewallJan 20, 2006

  • CVE-2006-5420
    21Monitor

    Kerio WinRoute Firewall 6.2.2 and earlier allows remote attackers to cause a denial of service (crash) via malformed DNS responses.

    MediumCVSS 5.0No exploitEPSS 3%

    kerio · winroute firewallOct 20, 2006

  • CVE-2006-0336
    21Monitor

    Kerio WinRoute Firewall before 6.1.4 Patch 2 allows attackers to cause a denial of service (CPU consumption and hang) via unknown vectors in

    MediumCVSS 5.0No exploitEPSS 2%

    kerio · winroute firewallJan 20, 2006