CNNVD-202512-5013 Information

CNNVD ID

CNNVD-202512-5013

CVE-2025-52691

  • CNNVD Published: 2025-12-29

Description (Chinese)

SmarterTools SmarterMail是SmarterTools公司的一套邮件服务器软件。该软件支持垃圾邮件过滤、数据统计、简单邮件传输协议SMTP验证等功能。 SmarterTools SmarterMail存在安全漏洞,该漏洞源于未经验证的攻击者可上传任意文件,可能导致远程代码执行。

Description (English)

SmartTools SmarterMail is a mail server software for SmarterTools. The software supports such functions as spam filtering, data statistics, simple mail transfer protocol SMTP authentication. There is a security loophole in SmarterTools SmarterMail, which stems from unverified assailants being able to upload random documents, which may lead to remote code execution.

Hazard Level

Low

Vulnerability Type

其他

Affected Vendor

SmarterTools

Published

2025-12-29

Last Modified

2026-02-24

References

https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-124/

Patch

https://www.smartertools.com/smartermail/downloads

Share on: