Skip to content

Known CVE

SmarterMail - Remote Code Execution

SmarterTools SmarterMail < build 9511 contains an unauthenticated remote code execution caused by malicious OS command execution via ConnectToHub API method, letting remote attackers execute arbitrary commands, exploit requires no authentication.

CVE-2026-24423

Critical2026CVSS 9.8CWE-306

cve2026 · smartermail · rce · oast · kev · vkev

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website