CVE-2022-24385: Information disclosure via direct object access on SmarterTrack v100.0.8019.14010
A Direct Object Access vulnerability in SmarterTools SmarterTrack leads to information disclosure This issue affects: SmarterTools SmarterTrack 100.0.8019.14010.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-24385?
CVE-2022-24385 is a Direct Object Access vulnerability in SmarterTools SmarterTrack that leads to information disclosure.
Which version of SmarterTools SmarterTrack is affected by CVE-2022-24385?
SmarterTools SmarterTrack version up to exclusive 100.0.8075 is affected by CVE-2022-24385.
How severe is CVE-2022-24385?
CVE-2022-24385 has a severity score of 6.5, which is considered medium severity.
How can I fix CVE-2022-24385?
To fix CVE-2022-24385, users should update their SmarterTools SmarterTrack software to version 100.0.8075 or later.
Where can I find more information about CVE-2022-24385?
You can find more information about CVE-2022-24385 on the following references: [Reference 1](https://csirt.divd.nl/CVE-2022-24385), [Reference 2](https://csirt.divd.nl/DIVD-2021-00029).