CVE-2007-6385
CVE-2007-6385 is a low-severity vulnerability in Kerio Winroute Firewall with a CVSS 2.0 base score of 2.1. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-287.
Key facts
- Severity: Low (CVSS 2.0 base score 2.1)
- EPSS exploit prediction: 0% (31st percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-287
- Affected product: Kerio Winroute Firewall
- Published:
- Last modified:
Description
The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.
Frequently asked questions
- What is CVE-2007-6385?
- The proxy server in Kerio WinRoute Firewall before 6.4.1 does not properly enforce authentication for HTTPS pages, which has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.
- How severe is CVE-2007-6385?
- CVE-2007-6385 has a CVSS 2.0 base score of 2.1, rated low severity.
- Is CVE-2007-6385 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 0% (31st percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2007-6385?
- CVE-2007-6385 primarily affects Kerio Winroute Firewall. In total, 46 product configurations (CPEs) are listed as vulnerable; see the affected-products list for the exact versions.
- How do I fix CVE-2007-6385?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2007-6385 published?
- CVE-2007-6385 was published on 2007-12-15 and last updated on 2026-06-16.
References
- http://osvdb.org/42122
- http://secunia.com/advisories/28072
- http://www.kerio.com/kwf_history.html
- http://www.securityfocus.com/bid/26851
- http://www.securitytracker.com/id?1019095
- http://www.vupen.com/english/advisories/2007/4212
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39020
Affected products (46)
- cpe:2.3:a:kerio:winroute_firewall:*:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.5:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.7:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.8:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.0.9:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.6:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.7:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.8:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.9:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.1.10:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:5.10:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.3:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.5:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.6:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.7:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.8:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.9:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.0.11:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1.3:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1.4:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1.4_patch_1:*:*:*:*:*:*:*
- cpe:2.3:a:kerio:winroute_firewall:6.1.4_patch_2:*:*:*:*:*:*:*
More vulnerabilities in Kerio Winroute Firewall
- CVE-2005-4425 — High (CVSS 7.8): Unspecified vulnerability in Kerio WinRoute Firewall before 6.1.3 allows remote attackers to cause a denial of service…
- CVE-2005-1062 — High (CVSS 7.5): The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and…
- CVE-2004-2483 — Medium (CVSS 6.4): Kerio WinRoute Firewall before 6.0.9 uses information from PTR queries in response to A queries, which allows remote…
- CVE-2006-5420 — Medium (CVSS 5.0): Kerio WinRoute Firewall 6.2.2 and earlier allows remote attackers to cause a denial of service (crash) via malformed…
- CVE-2006-2267 — Medium (CVSS 5.0): Kerio WinRoute Firewall before 6.2.1 allows remote attackers to cause a denial of service (application crash) via…
- CVE-2006-0336 — Medium (CVSS 5.0): Kerio WinRoute Firewall before 6.1.4 Patch 2 allows attackers to cause a denial of service (CPU consumption and hang)…
All CVEs affecting Kerio Winroute Firewall →
Other CWE-287 (Improper Authentication) vulnerabilities
- CVE-2026-83099 — Critical (CVSS 10.0): Vulnerability in the Oracle Forms product of Oracle Fusion Middleware (component: Forms Services, C/S, Charmode).…
- CVE-2026-83059 — Critical (CVSS 10.0): Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server).…
- CVE-2026-83021 — Critical (CVSS 10.0): Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Container). Supported…
- CVE-2026-83020 — Critical (CVSS 10.0): Vulnerability in the Oracle Platform Security for Java product of Oracle Fusion Middleware (component: Centralized…
- CVE-2026-71133 — Critical (CVSS 10.0): Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: Authentication Engine).…
- CVE-2026-76658 — Critical (CVSS 10.0): A vulnerability has been identified in the SSH daemon of HPE Networking Fabric Composer that could allow an…
Browse all CWE-287 (Improper Authentication) vulnerabilities →