2.1

CVE-2004-1023

Kerio Winroute Firewall before 6.0.9, ServerFirewall before 1.0.1, and MailServer before 6.0.5, when installed on Windows based systems, do not modify the ACLs for critical files, which allows local users with Power Users privileges to modify programs, install malicious DLLs in the plug-ins folder, and modify XML files related to configuration.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
KerioKerio Mailserver Version6.0.0
KerioKerio Mailserver Version6.0.1
KerioKerio Mailserver Version6.0.2
KerioKerio Mailserver Version6.0.3
KerioKerio Mailserver Version6.0.4
KerioServerfirewall Version1.0.0
KerioWinroute Firewall Version6.0.0
KerioWinroute Firewall Version6.0.1
KerioWinroute Firewall Version6.0.2
KerioWinroute Firewall Version6.0.3
KerioWinroute Firewall Version6.0.4
KerioWinroute Firewall Version6.0.5
KerioWinroute Firewall Version6.0.6
KerioWinroute Firewall Version6.0.7
KerioWinroute Firewall Version6.0.8
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.238
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:P/A:N