Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sat, 24 Jan 2026 04:15:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 24 Jan 2026 02:00:00 +0900
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SmarterTools SmarterMail versions prior to build 9511 contain an unauthenticated remote code execution vulnerability in the ConnectToHub API method. The attacker could point the SmarterMail to the malicious HTTP server, which serves the malicious OS command. This command will be executed by the vulnerable application. | |
| Title | SmarterTools SmarterMail < Build 9511 Unauthenticated RCE via ConnectToHub API | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-01-23T18:35:39.728Z
Reserved: 2026-01-22T18:21:46.813Z
Link: CVE-2026-24423
Updated: 2026-01-23T18:35:36.880Z
Status : Received
Published: 2026-01-23T17:16:13.483
Modified: 2026-01-23T17:16:13.483
Link: CVE-2026-24423
No data.
OpenCVE Enrichment
No data.