Known CVE
SmarterMail - Remote Code Execution
SmarterTools SmarterMail < build 9511 contains an unauthenticated remote code execution caused by malicious OS command execution via ConnectToHub API method, letting remote attackers execute arbitrary commands, exploit requires no authentication.
CVE-2026-24423
Critical2026CVSS 9.8CWE-306
cve2026 · smartermail · rce · oast · kev · vkev
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website