Known vulnerabilities in Kerio Connect
Vendor:
GFI Software
Software:
Kerio Connect
Software CPE:
cpe:2.3:a:gfi:kerio_connect:*:*:*:*:*:*:*:*
Website:
https://www.gfi.com/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
10.0.6
9.2.2
9.2.1
9.2.0
9.1.0
9.0.4
9.0.3
9.0.2
9.0.1
9.0.0
8.5.3
8.5.2
8.5.1
8.5.0
8.4.3
8.4.2
8.4.1
8.4.0
8.3.4
8.3.3
8.3.2
8.3.1
8.3.0
8.2.4
8.2.3
8.2.2
8.2.1
8.2.0
8.1.3
8.1.2
8.1.1
8.1.0
8.0.2
8.0.1
8.0.0
10.0.0
7.1.4 build 2985
9.2.9p2
9.2.9p1
9.2.9
9.2.8p1
9.2.8
9.2.7p3
9.2.7p2
9.2.7p1
9.2.7
9.2.6p2
9.2.6p1
9.2.6
9.2.5p3
9.2.5p2
9.2.5p1
9.2.5
9.2.4
9.2.3
9.1.1
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU110641 - Insufficient UI Warning of Dangerous Operations CVE-2017-7440 |
CWE-357 | Medium | 9.2.3 | 08.06.2025 |
SB2017050223 |
||
| #VU110640 - Stack-based buffer overflow CVE-2023-25267 |
CWE-121 | High | 10.0.0 | 08.06.2025 |
SB2023031558 |
||
| #VU110639 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle') CVE-2011-1506 |
CWE-300 | Medium | - | 08.06.2025 |
SB2011032203 |