Vulnerabilities > CVE-2008-0860 - Unspecified vulnerability in Kerio AVG Plugin and Kerio Mailserver
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN kerio
nessus
Summary
Unspecified vulnerability in the AVG plugin in Kerio MailServer before 6.5.0 has unspecified impact via unknown remote attack vectors related to null DACLs.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Nessus
NASL family | Gain a shell remotely |
NASL id | KERIO_KMS_650.NASL |
description | The remote host is running Kerio MailServer, a commercial mail server available for Windows, Linux, and Mac OS X platforms. According to its banner, the installed version of Kerio MailServer is affected by several issues : - There is a possible buffer overflow in the Visnetic antivirus plug-in. - There is an as-yet unspecified security issue with NULL DACL in the AVG plug-in. - Memory corruption is possible during uudecode decoding. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 31119 |
published | 2008-02-20 |
reporter | This script is Copyright (C) 2008-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/31119 |
title | Kerio MailServer < 6.5.0 Multiple Vulnerabilities |
code |
|
References
- http://secunia.com/advisories/29021
- http://secunia.com/advisories/29021
- http://www.kerio.com/kms_history.html
- http://www.kerio.com/kms_history.html
- http://www.securityfocus.com/bid/27868
- http://www.securityfocus.com/bid/27868
- http://www.securitytracker.com/id?1019428
- http://www.securitytracker.com/id?1019428
- http://www.vupen.com/english/advisories/2008/0594
- http://www.vupen.com/english/advisories/2008/0594