PT-2007-1566 · Sunbelt · Sunbelt Kerio Personal Firewall
Published
2007-01-05
·
Updated
2018-10-16
·
CVE-2007-0081
CVSS v2.0
6.8
Medium
| Vector | AV:L/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sunbelt Kerio Personal Firewall (SKPF) versions 4.3.246 through 4.3.268
Description
The issue allows local users to provide a Trojan horse iphlpapi.dll to SKPF by placing it in the installation directory. This could potentially lead to malicious activities.
Recommendations
For versions 4.3.246 through 4.3.268, consider removing or restricting access to the iphlpapi.dll file in the installation directory until a fix is available. As a temporary workaround, monitor the installation directory for any suspicious files.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Sunbelt Kerio Personal Firewall