Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
firewall vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2003-0220
Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and previous versions allows remote malicious users to execute arbitrary code via a handshake packet.
Kerio Personal Firewall 2 2.1
Kerio Personal Firewall 2 2.1.1
Kerio Personal Firewall 2 2.1.2
Kerio Personal Firewall 2 2.1.3
Kerio Personal Firewall 2 2.1.4
5 EDB exploits
1 Github repository
NA
CVE-2003-0219
Kerio Personal Firewall (KPF) 2.1.4 and previous versions allows remote malicious users to execute administrator commands by sniffing packets from a valid session and replaying them against the remote administration server.
Kerio Personal Firewall 2 2.1
Kerio Personal Firewall 2 2.1.1
Kerio Personal Firewall 2 2.1.2
Kerio Personal Firewall 2 2.1.3
Kerio Personal Firewall 2 2.1.4
NA
CVE-2015-5082
Endian Firewall prior to 3.0 allows remote malicious users to execute arbitrary commands via shell metacharacters in the (1) NEW_PASSWORD_1 or (2) NEW_PASSWORD_2 parameter to cgi-bin/chpasswd.cgi.
Endian Firewall Endian Firewall
3 EDB exploits
NA
CVE-2002-2139
Cisco PIX Firewall 6.0.3 and previous versions, and 6.1.x to 6.1.3, do not delete the duplicate ISAKMP SAs for a user's VPN session, which allows local users to hijack a session via a man-in-the-middle attack.
Cisco Pix Firewall Software 6.1
Cisco Pix Firewall Software 6.1\\(2\\)
Cisco Pix Firewall Software 6.1\\(3\\)
Cisco Pix Firewall Software 6.0
Cisco Pix Firewall Software 6.0\\(2\\)
Cisco Pix Firewall Software 6.0\\(1\\)
Cisco Pix Firewall Software 6.0\\(3\\)
7.2
CVSSv3
CVE-2022-28695
On F5 BIG-IP AFM 16.1.x versions before 16.1.2.2, 15.1.x versions before 15.1.5.1, 14.1.x versions before 14.1.4.6, and 13.1.x versions before 13.1.5, an authenticated attacker with high privileges can upload a maliciously crafted file to the BIG-IP AFM Configuration utility, whi...
F5 Big-ip Advanced Firewall Manager 13.1.0
F5 Big-ip Advanced Firewall Manager 14.1.0
F5 Big-ip Advanced Firewall Manager 15.1.0
F5 Big-ip Advanced Firewall Manager 14.1.4
F5 Big-ip Advanced Firewall Manager 16.1.0
F5 Big-ip Advanced Firewall Manager 17.0.0
F5 Big-ip Advanced Firewall Manager 16.1.2
F5 Big-ip Advanced Firewall Manager 16.1.1
F5 Big-ip Advanced Firewall Manager 15.1.5
F5 Big-ip Advanced Firewall Manager 15.1.4
F5 Big-ip Advanced Firewall Manager 15.1.3
F5 Big-ip Advanced Firewall Manager 15.1.2
F5 Big-ip Advanced Firewall Manager 15.1.1
F5 Big-ip Advanced Firewall Manager 14.1.3
F5 Big-ip Advanced Firewall Manager 14.1.2
F5 Big-ip Advanced Firewall Manager 13.1.5
F5 Big-ip Advanced Firewall Manager 13.1.4
F5 Big-ip Advanced Firewall Manager 13.1.3
F5 Big-ip Advanced Firewall Manager 13.1.1
NA
CVE-2004-1023
Kerio Winroute Firewall prior to 6.0.9, ServerFirewall prior to 1.0.1, and MailServer prior to 6.0.5, when installed on Windows based systems, do not modify the ACLs for critical files, which allows local users with Power Users privileges to modify programs, install malicious DLL...
Kerio Kerio Mailserver 6.0.0
Kerio Kerio Mailserver 6.0.1
Kerio Kerio Mailserver 6.0.2
Kerio Winroute Firewall 6.0.3
Kerio Winroute Firewall 6.0.4
Kerio Winroute Firewall 6.0.1
Kerio Winroute Firewall 6.0.2
Kerio Serverfirewall 1.0.0
Kerio Winroute Firewall 6.0.0
Kerio Winroute Firewall 6.0.7
Kerio Winroute Firewall 6.0.8
Kerio Kerio Mailserver 6.0.3
Kerio Kerio Mailserver 6.0.4
Kerio Winroute Firewall 6.0.5
Kerio Winroute Firewall 6.0.6
NA
CVE-2004-1472
Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware prior to 1.63 allow remote malicious users to cause a denial of service (device freeze) via a fast UDP port scan on the WAN interface.
Symantec Gateway Security 360
Symantec Gateway Security 360r
Symantec Nexland Isb Soho Firewall Appliance
Symantec Firewall Vpn Appliance 100
Symantec Firewall Vpn Appliance 200
Symantec Nexland Pro800 Firewall Appliance
Symantec Nexland Pro800turbo Firewall Appliance
Symantec Firewall Vpn Appliance 200r
Symantec Gateway Security 320
Symantec Nexland Wavebase Firewall Appliance
Symantec Nexland Pro100 Firewall Appliance
Symantec Nexland Pro400 Firewall Appliance
NA
CVE-2004-1473
Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware prior to 1.63 and Gateway Security 320, 360, and 360R running firmware prior to 622 allow remote malicious users to bypass filtering and determine whether the device is running services such as tftpd,...
Symantec Firewall Vpn Appliance 100
Symantec Firewall Vpn Appliance 200
Symantec Nexland Pro400 Firewall Appliance
Symantec Nexland Pro800 Firewall Appliance
Symantec Gateway Security 360
Symantec Gateway Security 360r
Symantec Nexland Isb Soho Firewall Appliance
Symantec Nexland Pro100 Firewall Appliance
Symantec Firewall Vpn Appliance 200r
Symantec Gateway Security 320
Symantec Nexland Pro800turbo Firewall Appliance
Symantec Nexland Wavebase Firewall Appliance
NA
CVE-2004-1474
Symantec Enterprise Firewall/VPN Appliances 100, 200, and 200R running firmware prior to 1.63 and Gateway Security 320, 360, and 360R running firmware prior to 622 uses a default read/write SNMP community string, which allows remote malicious users to alter the firewall's co...
Symantec Gateway Security 360
Symantec Gateway Security 360r
Symantec Firewall Vpn Appliance 100
Symantec Nexland Pro400 Firewall Appliance
Symantec Nexland Pro800 Firewall Appliance
Symantec Firewall Vpn Appliance 200
Symantec Firewall Vpn Appliance 200r
Symantec Gateway Security 320
Symantec Nexland Pro800turbo Firewall Appliance
Symantec Nexland Wavebase Firewall Appliance
Symantec Nexland Isb Soho Firewall Appliance
Symantec Nexland Pro100 Firewall Appliance
NA
CVE-2000-1037
Check Point Firewall-1 session agent 3.0 up to and including 4.1 generates different error messages for invalid user names versus invalid passwords, which allows remote malicious users to determine valid usernames and guess a password via a brute force attack.
Checkpoint Firewall-1 3.0
Checkpoint Firewall-1 4.0
Checkpoint Firewall-1 4.1
2 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »