7.5
CVSSv2

CVE-2003-0220

Published: 12/05/2003 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 775
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the administrator authentication process for Kerio Personal Firewall (KPF) 2.1.4 and previous versions allows remote malicious users to execute arbitrary code via a handshake packet.

Vulnerable Product Search on Vulmon Subscribe to Product

kerio personal firewall 2 2.1

kerio personal firewall 2 2.1.1

kerio personal firewall 2 2.1.2

kerio personal firewall 2 2.1.3

kerio personal firewall 2 2.1.4

Exploits

source: wwwsecurityfocuscom/bid/7180/info A buffer-overflow vulnerability has been discovered in Kerio Personal Firewall The problem occurs during the administration authentication process An attacker could exploit this vulnerability by forging a malicious packet containing an excessive data size The application then reads this data in ...
/* * Kerio Personal Firewall v214 remote code execution exploit * Tested on Windows XP with SP1 * * In order to exploit, for ease of mind, set the firewall to permit all traffic, or allow * a connection to port 44334 from your testing unix shell ip * * It is also possible to use UDP instead of TCP * * It works out very well, if not, ...
## # $Id: kerio_authrb 9525 2010-06-15 07:18:08Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Metas ...
## # This file is part of the Metasploit Framework and may be redistributed # according to the licenses defined in the Authors field below In the # case of an unknown or missing license, this file defaults to the same # license as the core Framework (dual GPLv2 and Artistic) The latest # version of the Framework can always be obtained from metasp ...
source: wwwsecurityfocuscom/bid/7180/info A buffer-overflow vulnerability has been discovered in Kerio Personal Firewall The problem occurs during the administration authentication process An attacker could exploit this vulnerability by forging a malicious packet containing an excessive data size The application then reads this data i ...

Github Repositories

exploits This repo is being used to host both newly found exploits, and old exploits I've been rewriting in python Kerio Personal Firewall 214 - Remote Code Execution (CVE-2003-0220) stevekellyorguk/2018/07/26/exploit-rewrite-kerio-personal-firewall-2-1-4/ KerioFirewall/KerioFirewall_21py YahooPOPs 06 - SMTP Remote Buffer Overflow (CVE-2004-1558) s