Vulnerabilities > Kerio

DATE CVE VULNERABILITY TITLE RISK
2006-12-14 CVE-2006-6554 Denial-Of-Service vulnerability in Kerio Mailserver
Unspecified vulnerability in Kerio MailServer before 6.3.1 allows remote attackers to cause a denial of service (segmentation fault and service stop) via certain long LDAP queries, as demonstrated by vd_kms6.pm.
network
low complexity
kerio
5.0
2006-11-08 CVE-2006-5812 Denial-Of-Service vulnerability in Kerio Mailserver
Unspecified vulnerability in Kerio MailServer allows attackers to cause a denial of service, as demonstrated by vd_kms4.pm, a "Kerio MailServer DoS." NOTE: As of 20061108, this disclosure has no actionable information.
network
low complexity
kerio
5.0
2006-10-20 CVE-2006-5420 Denial of Service vulnerability in Kerio WinRoute Firewall
Kerio WinRoute Firewall 6.2.2 and earlier allows remote attackers to cause a denial of service (crash) via malformed DNS responses.
network
low complexity
kerio
5.0
2006-10-05 CVE-2006-5153 Local Denial of Service vulnerability in Sunbelt Kerio Personal Firewall
The (1) fwdrv.sys and (2) khips.sys drivers in Sunbelt Kerio Personal Firewall 4.3.268 and earlier do not validate arguments passed through to SSDT functions, including NtCreateFile, NtDeleteFile, NtLoadDriver, NtMapViewOfSection, NtOpenFile, and NtSetInformationFile, which allows local users to cause a denial of service (crash) and possibly other impacts via unspecified vectors.
network
low complexity
kerio
5.0
2006-07-24 CVE-2006-3787 Denial of Service vulnerability in Sunbelt Kerio Personal Firewall CreateRemoteThread
kpf4ss.exe in Sunbelt Kerio Personal Firewall 4.3.x before 4.3.268 does not properly hook the CreateRemoteThread API function, which allows local users to cause a denial of service (crash) and bypass protection mechanisms by calling CreateRemoteThread.
local
low complexity
kerio
2.1
2006-05-09 CVE-2006-2267 Remote Denial of Service vulnerability in Kerio WinRoute Firewall
Kerio WinRoute Firewall before 6.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors in the "email protocol inspectors," possibly (1) SMTP and (2) POP3.
network
low complexity
kerio
5.0
2006-05-05 CVE-2006-2203 Remote Security vulnerability in Kerio Mailserver
Unspecified vulnerability in Kerio MailServer before 6.1.4 has unknown impact and remote attack vectors related to a "possible bypass of attachment filter."
network
low complexity
kerio
6.4
2006-03-12 CVE-2006-1158 Remote Denial of Service vulnerability in Kerio MailServer
Kerio MailServer before 6.1.3 Patch 1 allows remote attackers to cause a denial of service (application crash) via a crafted IMAP LOGIN command.
network
low complexity
kerio
7.8
2006-01-21 CVE-2006-0336 Denial of Service vulnerability in Kerio WinRoute Firewall Web Browsing
Kerio WinRoute Firewall before 6.1.4 Patch 2 allows attackers to cause a denial of service (CPU consumption and hang) via unknown vectors involving "browsing the web".
network
low complexity
kerio
5.0
2006-01-21 CVE-2006-0335 Denial of Service vulnerability in Kerio WinRoute Firewall
Multiple unspecified vulnerabilities in Kerio WinRoute Firewall before 6.1.4 Patch 1 allow remote attackers to cause a denial of service via multiple unspecified vectors involving (1) long strings received from Active Directory and (2) the filtering of HTML.
network
low complexity
kerio
5.0