SmarterTools SmarterMail 16.x before build 6985 allows deserialization of untrusted data. An unauthenticated attacker could run commands on the server when port 17001 was remotely accessible. This port is not accessible remotely by default after applying the Build 6985 patch.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2019-04-24T00:00:00
Updated: 2024-08-04T20:46:44.670Z
Reserved: 2019-01-29T00:00:00
Link: CVE-2019-7214
Vulnrichment
No data.
NVD
Status : Modified
Published: 2019-04-24T15:29:02.107
Modified: 2024-11-21T04:47:45.803
Link: CVE-2019-7214
Redhat
No data.