Kerio MailServer < 6.4.1 Attachment Filter Unspecified Vulnerability

critical Nessus Plugin ID 25991

Synopsis

The remote mail server is affected by an unspecified vulnerability.

Description

The remote host is running Kerio MailServer, a commercial mail server available for Windows, Linux, and Mac OS X platforms.

According to its banner, the installed version of Kerio MailServer contains an unspecified vulnerability involving the attachment filter.

Solution

Upgrade to Kerio MailServer 6.4.1 or later.

See Also

http://www.kerio.com/kms_history.html

Plugin Details

Severity: Critical

ID: 25991

File Name: kerio_kms_641.nasl

Version: 1.23

Type: remote

Published: 9/5/2007

Updated: 6/1/2022

Configuration: Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/a:kerio:kerio_mailserver

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 7/25/2007

Reference Information

CVE: CVE-2007-3993

BID: 25038