Security
Loading…

CVE-2025-52691

UNKNOWNKnown Exploited
Description

SmarterTools SmarterMail contains an unrestricted upload of file with dangerous type vulnerability that could allow an unauthenticated attacker to upload arbitrary files to any location on the mail server, potentially enabling remote code execution.

Timeline
Published:January 26th, 2026 12:00 AM
Last modified:January 26th, 2026 12:00 AM
Added to KEV:January 26th, 2026
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

SmarterTools

Products

SmarterMail
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute