Filtered by vendor Kerio Subscriptions
Total 44 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2006-3787 1 Kerio 1 Personal Firewall 2025-04-03 N/A
kpf4ss.exe in Sunbelt Kerio Personal Firewall 4.3.x before 4.3.268 does not properly hook the CreateRemoteThread API function, which allows local users to cause a denial of service (crash) and bypass protection mechanisms by calling CreateRemoteThread.
CVE-2004-1907 1 Kerio 1 Personal Firewall 2025-04-03 N/A
The Web Filtering functionality in Kerio Personal Firewall (KPF) 4.0.13 allows remote attackers to cause a denial of service (crash) by sending hex-encoded URLs containing "%13%12%13".
CVE-2002-1434 1 Kerio 1 Kerio Mailserver 2025-04-03 N/A
Multiple cross-site scripting (XSS) vulnerabilities in the Web mail module of Kerio MailServer 5.0 allow remote attackers to execute HTML script as other users via certain URLs.
CVE-2004-1658 1 Kerio 1 Personal Firewall 2025-04-03 N/A
Kerio Personal Firewall 4.0 (KPF4) allows local users with administrative privileges to bypass the Application Security feature and execute arbitrary processes by directly writing to \device\physicalmemory to restore the running kernel's SDT ServiceTable.