Kerio WinRoute Firewall HTTP/HTTPS Management Detection

medium Nessus Plugin ID 20225

Synopsis

The remote host is running a firewall application.

Description

The remote host appears to be running the Kerio WinRoute Firewall application. It is possible to access the HTTP or HTTPS management interface on the host.

Solution

If the service is not needed, disable HTTP and/or HTTPS management, or filter incomming requests to the ports from untrusted sources.

Plugin Details

Severity: Medium

ID: 20225

File Name: kerio_wrf_management_detection.nasl

Version: 1.12

Type: remote

Family: Firewalls

Published: 11/18/2005

Updated: 6/12/2020

Asset Inventory: true

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 4

Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Information

CPE: cpe:/a:kerio:winroute_firewall

Excluded KB Items: Settings/disable_cgi_scanning