>> Kerio WinRoute Firewall HTML Data and Active Directory DoS Vulnerabilities
Title : Kerio WinRoute Firewall HTML Data and Active Directory DoS Vulnerabilities VUPEN ID : VUPEN/ADV-2006-0247 CVE ID : CVE-2006-0335
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-01-19
Technical Description
Two vulnerabilities were identified in Kerio WinRoute Firewall, which could be exploited by remote attackers to cause a denial of service.
The first issue is due to an improper data handling in HTML content filtering, which could be exploited by attackers to cause a denial of service.
The second flaw is due to an error when too long strings are fetched from Active Directory, which could cause a denial of service.