Vulnerabilities > CVE-2004-2329 - Unspecified vulnerability in Kerio Personal Firewall 2.1.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Kerio Personal Firewall (KPF) 2.1.5 allows local users to execute arbitrary code with SYSTEM privileges via the Load button in the Firewall Configuration Files option, which does not drop privileges before opening the file loading dialog box.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://secunia.com/advisories/10746/
- http://secunia.com/advisories/10746/
- http://www.osvdb.org/3748
- http://www.osvdb.org/3748
- http://www.securityfocus.com/bid/9525
- http://www.securityfocus.com/bid/9525
- http://www.securitytracker.com/alerts/2004/Jan/1008870.html
- http://www.securitytracker.com/alerts/2004/Jan/1008870.html
- http://www.tuneld.com/_images/other/kpf_system_privileges.png
- http://www.tuneld.com/_images/other/kpf_system_privileges.png
- http://www.tuneld.com/news/?id=30
- http://www.tuneld.com/news/?id=30
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14981
- https://exchange.xforce.ibmcloud.com/vulnerabilities/14981