Vulnerability index

Browse CVEs

45 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Kerio Connect MEDIUM 5.4
CVE-2025-2977

A vulnerability was found in GFI KerioConnect 10.0.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality…

No fix yet
Fix from $1,600 2025-03-31
Kerio Connect MEDIUM 5.4
CVE-2025-2975

A vulnerability was found in GFI KerioConnect 10.0.6 and classified as problematic. This issue affects some unknown processing of the file Settings/E…

No fix yet
Fix from $1,600 2025-03-31
Kerio Control HIGH 8.8
CVE-2024-52875EPSS 30%

An issue was discovered in GFI Kerio Control 9.2.5 through 9.4.5. The dest GET parameter passed to the /nonauth/addCertException.cs and /nonauth/gues…

Fix: after 9.4.5
Fix from $1,950 2025-01-31
Archiver CRITICAL 9.8
CVE-2024-11948

GFI Archiver Telerik Web UI Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected ins…

Fix: 15.7+
Fix from $2,300 2024-12-12
Archiver HIGH 8.8
CVE-2024-11947

GFI Archiver Core Service Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execut…

Fix: 15.7+
Fix from $1,950 2024-12-12
Archiver HIGH 8.8
CVE-2024-11949

GFI Archiver Store Service Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execu…

Fix: 15.7+
Fix from $1,950 2024-12-12
Kerio Connect HIGH 8.8
CVE-2023-25267

An issue was discovered in GFI Kerio Connect 9.4.1 patch 1 (fixed in 10.0.0). There is a stack-based Buffer Overflow in the webmail component's 2FASe…

No fix yet
Fix from $1,950 2023-03-15
Archiver CRITICAL 9.8
CVE-2021-29281

File upload vulnerability in GFI Mail Archiver versions up to and including 15.1 via insecure implementation of Telerik Web UI plugin which is affect…

Fix: 15.2+
Fix from $2,300 2022-07-07
Kerio Control MEDIUM 6.1
CVE-2019-16414

A DOM based XSS in GFI Kerio Control v9.3.0 allows embedding of malicious code and manipulating the login page to send back a victim's cleartext cred…

No fix yet
Fix from $1,600 2019-09-30
Kerio Connect MEDIUM 6.5
CVE-2017-7440

Kerio Connect 8.0.0 through 9.2.2, and Kerio Connect Client desktop application for Windows and Mac 9.2.0 through 9.2.2, when e-mail preview is enabl…

Fix: after 9.2.2
Fix from $1,600 2017-05-02
Gfi Backup 2009 MEDIUM 6.9
CVE-2010-5254

Untrusted search path vulnerability in GFI Backup 3.1 Build 20100730 2009 Home Edition allows local users to gain privileges via a Trojan horse ArmAc…

Mitigation only
Fix from $1,600 2012-09-07
Vipre Antivirus HIGH 7.0
CVE-2010-5181

Race condition in VIPRE Antivirus Premium 4.0.3272 on Windows XP allows local users to bypass kernel-mode hook handlers, and execute dangerous code t…

Mitigation only
Fix from $1,950 2012-08-25
Mailsecurity HIGH 7.5
CVE-2005-3182

Buffer overflow in the HTTP management interface for GFI MailSecurity 8.1 allows remote attackers to execute arbitrary code via long headers such as …

Patch available
Fix from $1,950 2005-10-20
Mailessentials HIGH 10.0
CVE-2004-1312

A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial o…

Patch available
Fix from $1,950 2005-01-03
Mailsecurity HIGH 7.5
CVE-2002-1121EPSS 7%

SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP before 7.2, (2) InterScan VirusWall before 3.52 build 1494, (3) the def…

Mitigation only
Fix from $1,950 2002-09-24