Vulnerability index

Browse CVEs

44 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Smarterstats HIGH 7.5
CVE-2011-2149

Multiple SQL injection vulnerabilities in the SmarterTools SmarterStats 6.0 web server allow remote attackers to execute arbitrary SQL commands via c…

Mitigation only
Fix from $1,950 2011-05-20
Smarterstats HIGH 7.5
CVE-2011-2155

Login.aspx in the SmarterTools SmarterStats 6.0 web server generates a ctl00$MPH$txtPassword password form field without disabling the autocomplete f…

Mitigation only
Fix from $1,950 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2150

The SmarterTools SmarterStats 6.0 web server does not properly validate string data that is intended for storage in an XML document, which allows rem…

Mitigation only
Fix from $1,600 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2151

The (1) Admin/frmEmailReportSettings.aspx, (2) Admin/frmGeneralSettings.aspx, (3) Admin/frmSite.aspx, (4) Client/frmUser.aspx, and (5) Login.aspx com…

Mitigation only
Fix from $1,600 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2152

The SmarterTools SmarterStats 6.0 web server generates web pages containing external links in response to GET requests with query strings for (1) Cli…

Mitigation only
Fix from $1,600 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2153

Login.aspx in the SmarterTools SmarterStats 6.0 web server supports URLs containing txtUser and txtPass parameters in the query string, which makes i…

Mitigation only
Fix from $1,600 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2154

login.aspx in the SmarterTools SmarterStats 6.0 web server does not include the HTTPOnly flag in a Set-Cookie header for the loginsettings cookie, wh…

Mitigation only
Fix from $1,600 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2156

The SmarterTools SmarterStats 6.0 web server allows remote attackers to obtain directory listings via a direct request for the (1) Admin/, (2) Admin/…

Mitigation only
Fix from $1,600 2011-05-20
Smarterstats MEDIUM 5.0
CVE-2011-2157

The (1) Admin/frmEmailReportSettings.aspx and (2) Admin/frmGeneralSettings.aspx components in the SmarterTools SmarterStats 6.0 web server generate w…

Mitigation only
Fix from $1,600 2011-05-20
Smartermail MEDIUM 5.0
CVE-2010-3486

Directory traversal vulnerability in FileStorageUpload.ashx in SmarterMail 7.1.3876 allows remote attackers to read arbitrary files via a (1) ../ (do…

No fix yet
Fix from $1,600 2010-09-22
Smartermail MEDIUM 5.0
CVE-2008-1854

Unspecified vulnerability in SmarterMail Web Server (SMWebSvr.exe) in SmarterMail 5.0.2999 allows remote attackers to cause a denial of service (serv…

No fix yet
Fix from $1,600 2008-04-16
Smartermail HIGH 7.8
CVE-2004-2583

SMTP service in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service (CPU consumption) via a large num…

Mitigation only
Fix from $1,950 2004-12-31
Smartermail MEDIUM 5.0
CVE-2004-2586

Directory traversal vulnerability in frmGetAttachment.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to read arbitrar…

No fix yet
Fix from $1,600 2004-12-31
Smartermail MEDIUM 5.0
CVE-2004-2587

login.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service via a long txtusername parameter, p…

No fix yet
Fix from $1,600 2004-12-31