Description
Directory traversal vulnerability in frmGetAttachment.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to read arbitrary files via the filename parameter.
Affected products
- SmarterTools / SmarterMail1.6.1511 – 1.6.1511
- SmarterTools / SmarterMail1.6.1529 – 1.6.1529
References
Updated 44m ago · 2 sources