vendor:
SmarterMail
by:
1F98D
9.8
CVSS
CRITICAL
Remote Code Execution
502
CWE
Product Name: SmarterMail
Affected Version From: SmarterMail before build 6985
Affected Version To: SmarterMail build 6985
Patch Exists: NO
Related CWE: CVE-2019-7214
CPE: a:smartertools:smartermail:6985
Platforms Tested: Windows 10 x64
2020
SmarterMail Build 6985 – Remote Code Execution
SmarterMail before build 6985 provides a .NET remoting endpoint which is vulnerable to a .NET deserialization attack.
Mitigation:
Upgrade to a version higher than build 6985.