PT-2023-13458 · Gfi · Kerio Connect

Published

2023-09-13

·

Updated

2023-09-13

·

CVE-2022-36178

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Kerio Connect administration versions 9.4 through 9.4.1
Description A security issue affects the administration component of Kerio Connect. The estimated number of potentially affected devices worldwide is not specified. There are reports of real-world incidents where this issue was exploited. Technical details about exploitation include the use of vulnerable parameters or variables, but specific API Endpoints or function names are not mentioned.
Recommendations For Kerio Connect administration versions 9.4 through 9.4.1, update to a version that contains a fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2022-36178

Affected Products

Kerio Connect