Описание
The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.
The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-6385
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39020
- http://osvdb.org/42122
- http://secunia.com/advisories/28072
- http://www.kerio.com/kwf_history.html
- http://www.securityfocus.com/bid/26851
- http://www.securitytracker.com/id?1019095
- http://www.vupen.com/english/advisories/2007/4212
Связанные уязвимости
nvd
почти 19 лет назад
The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.