First published: Mon Mar 14 2022(Updated: )
A Direct Object Access vulnerability in SmarterTools SmarterTrack leads to information disclosure This issue affects: SmarterTools SmarterTrack 100.0.8019.14010.
Credit: csirt@divd.nl
Affected Software | Affected Version | How to fix |
---|---|---|
SmarterTools SmarterTrack | <100.0.8075 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24385 is a Direct Object Access vulnerability in SmarterTools SmarterTrack that leads to information disclosure.
SmarterTools SmarterTrack version up to exclusive 100.0.8075 is affected by CVE-2022-24385.
CVE-2022-24385 has a severity score of 6.5, which is considered medium severity.
To fix CVE-2022-24385, users should update their SmarterTools SmarterTrack software to version 100.0.8075 or later.
You can find more information about CVE-2022-24385 on the following references: [Reference 1](https://csirt.divd.nl/CVE-2022-24385), [Reference 2](https://csirt.divd.nl/DIVD-2021-00029).