Описание
The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and MailServer up to 6.0.8 allows remote attackers to cause a denial of service (CPU consumption) via certain attacks that force the product to "compute unexpected conditions" and "perform cryptographic operations."
Ссылки
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:kerio:kerio_mailserver:6.0:*:*:*:*:*:*:*
cpe:2.3:a:kerio:kerio_mailserver:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:kerio:kerio_mailserver:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:kerio:kerio_mailserver:6.0.3:*:*:*:*:*:*:*
cpe:2.3:a:kerio:kerio_mailserver:6.0.4:*:*:*:*:*:*:*
cpe:2.3:a:kerio:kerio_mailserver:6.0.5:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.0.6:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.0.7:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.0.8:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.0.9:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.0.10:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.0.16:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.1:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:kerio:personal_firewall:4.1.2:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.3:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.4:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.5:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.6:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.7:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.8:*:*:*:*:*:*:*
cpe:2.3:a:kerio:winroute_firewall:6.0.9:*:*:*:*:*:*:*
EPSS
Процентиль: 72%
0.00739
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and MailServer up to 6.0.8 allows remote attackers to cause a denial of service (CPU consumption) via certain attacks that force the product to "compute unexpected conditions" and "perform cryptographic operations."
EPSS
Процентиль: 72%
0.00739
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other