Vulnerabilities > Smartstore

DATE CVE VULNERABILITY TITLE RISK
2021-05-19 CVE-2020-36364 Path Traversal vulnerability in Smartstore Smartstorenet
An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.
network
low complexity
smartstore CWE-22
critical
9.1
2021-05-19 CVE-2020-36365 Open Redirect vulnerability in Smartstore Smartstorenet
Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskController.Edit open redirect.
network
low complexity
smartstore CWE-601
6.1
2021-05-12 CVE-2021-32607 Unspecified vulnerability in Smartstore
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
network
low complexity
smartstore
critical
9.8
2021-05-12 CVE-2021-32608 Unspecified vulnerability in Smartstore
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
network
low complexity
smartstore
critical
9.8
2021-02-19 CVE-2020-27997 Cross-Site Request Forgery (CSRF) vulnerability in Smartstore Smartstorenet
An issue was discovered in SmartStoreNET before 4.1.0.
network
low complexity
smartstore CWE-352
8.8
2020-10-29 CVE-2020-27996 Unspecified vulnerability in Smartstore Smartstorenet
An issue was discovered in SmartStoreNET before 4.0.1.
network
low complexity
smartstore
8.8
2020-10-08 CVE-2020-15243 Missing Authentication for Critical Function vulnerability in Smartstore 4.0.0/4.0.1
Affected versions of Smartstore have a missing WebApi Authentication attribute.
network
low complexity
smartstore CWE-306
critical
9.8