Kerio MailServer < 6.0.10 Unspecified Admin Web Interface DoS
Medium Nessus Network Monitor Plugin ID 2873
SynopsisThe remote host is vulnerable to a Denial of Service (DoS) attack.
DescriptionThe remote host is running a version of Kerio MailServer prior to 6.0.10.
There is a flaw in the remote version of this server that would allow an attacker to exhaust resources on the administrative web interface. While the details of the flaw are unknown, it is alledged that an attacker can launch the attack without any credentials and render the target service unavailable.
SolutionUpgrade to Kerio MailServer 6.0.10 or higher.