📦 Smartermail

by Smartertools

🔍 What is Smartermail?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-24423

CRITICAL CVSS 9.8 Jan 23, 2026

This vulnerability allows unauthenticated attackers to execute arbitrary operating system commands on SmarterMail servers by pointing them to malicious HTTP servers. Attackers can achieve full system ...

CVE-2026-23760

CRITICAL CVSS 9.8 Jan 22, 2026

CVE-2026-23760 is an authentication bypass vulnerability in SmarterMail's password reset API that allows unauthenticated attackers to reset administrator passwords. This leads to full administrative c...

CVE-2025-52691

CRITICAL CVSS 10.0 Dec 29, 2025

This critical vulnerability allows unauthenticated attackers to upload arbitrary files to any location on vulnerable SmarterMail servers, potentially leading to remote code execution. It affects Smart...

CVE-2021-32234

CRITICAL CVSS 9.8 Nov 17, 2021

CVE-2021-32234 is a remote code execution vulnerability in SmarterTools SmarterMail email server software. Attackers can execute arbitrary code on affected systems without authentication. Organization...

CVE-2020-29548

HIGH CVSS 8.1 Aug 17, 2021

This vulnerability allows man-in-the-middle attackers to inject plaintext commands into encrypted POP3 sessions in SmarterMail. Attackers can pipeline commands after a STARTTLS command, potentially co...