vendor:
WinRoute Firewall
by:
Eugene Salov, Andrey Komarov
7,5
CVSS
HIGH
Source Code Disclosure
200
CWE
Product Name: WinRoute Firewall
Affected Version From: Prior to 6
Affected Version To: Prior to 6
Patch Exists: YES
Related CWE: N/A
CPE: a:kerio:winroute_firewall
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Microsoft Windows
2012
Kerio WinRoute Firewall Embedded Web Server Version Source Code Disclosure
Source code disclosure attacks on Kerio Web Server allow a malicious user to obtain the source code of a server-side application. This vulnerability grants the attacker deeper knowledge of the Web application logic.
Mitigation:
Ensure that the web server is configured to prevent source code disclosure.