Back to search
CVE-2004-2329
Published: Aug 16, 2005
Modified: Aug 8, 2024
PUBLISHED
Description
Kerio Personal Firewall (KPF) 2.1.5 allows local users to execute arbitrary code with SYSTEM privileges via the Load button in the Firewall Configuration Files option, which does not drop privileges before opening the file loading dialog box.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
9525
vdb-entry
x_refsource_BID
kerio-pf-gain-privileges(14981)
vdb-entry
x_refsource_XF
http://www.tuneld.com/news/?id=30
x_refsource_MISC
http://www.tuneld.com/_images/other/kpf_system_privileges.png
x_refsource_MISC
1008870
vdb-entry
x_refsource_SECTRACK
3748
vdb-entry
x_refsource_OSVDB
10746
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now