Lucene search

K
cve[email protected]CVE-2005-1062
HistoryMay 02, 2005 - 4:00 a.m.

CVE-2005-1062

2005-05-0204:00:00
web.nvd.nist.gov
25
kerio winroute firewall
personal firewall
mailserver
brute force
remote attack
password security
cve-2005-1062

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.01 Low

EPSS

Percentile

83.7%

The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and MailServer up to 6.0.8 allows remote attackers to quickly obtain passwords that are 5 characters or less via brute force methods.

Affected configurations

NVD
Node
keriokerio_mailserverMatch6.0.0
OR
keriokerio_mailserverMatch6.0.1
OR
keriokerio_mailserverMatch6.0.2
OR
keriokerio_mailserverMatch6.0.3
OR
keriokerio_mailserverMatch6.0.4
OR
keriokerio_mailserverMatch6.0.5
OR
keriokerio_mailserverMatch6.0.6
OR
keriokerio_mailserverMatch6.0.7
OR
keriokerio_mailserverMatch6.0.8
OR
keriopersonal_firewallMatch4.0.7
OR
keriopersonal_firewallMatch4.0.8
OR
keriopersonal_firewallMatch4.0.9
OR
keriopersonal_firewallMatch4.0.10
OR
keriopersonal_firewallMatch4.0.11
OR
keriopersonal_firewallMatch4.0.12
OR
keriopersonal_firewallMatch4.0.13
OR
keriopersonal_firewallMatch4.0.14
OR
keriopersonal_firewallMatch4.0.15
OR
keriopersonal_firewallMatch4.0.16
OR
keriopersonal_firewallMatch4.1.0
OR
keriopersonal_firewallMatch4.1.1
OR
keriopersonal_firewallMatch4.1.2
OR
keriowinroute_firewallMatch6.0.0
OR
keriowinroute_firewallMatch6.0.1
OR
keriowinroute_firewallMatch6.0.2
OR
keriowinroute_firewallMatch6.0.3
OR
keriowinroute_firewallMatch6.0.4
OR
keriowinroute_firewallMatch6.0.5
OR
keriowinroute_firewallMatch6.0.6
OR
keriowinroute_firewallMatch6.0.7
OR
keriowinroute_firewallMatch6.0.8
OR
keriowinroute_firewallMatch6.0.9
OR
keriowinroute_firewallMatch6.0.10

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

6.8 Medium

AI Score

Confidence

Low

0.01 Low

EPSS

Percentile

83.7%

Related for CVE-2005-1062