Vulnerabilities > Smartstore

DATE CVE VULNERABILITY TITLE RISK
2021-05-19 CVE-2020-36364 Path Traversal vulnerability in Smartstore Smartstorenet
An issue was discovered in Smartstore (aka SmartStoreNET) before 4.1.0.
network
low complexity
smartstore CWE-22
6.4
2021-05-19 CVE-2020-36365 Open Redirect vulnerability in Smartstore Smartstorenet
Smartstore (aka SmartStoreNET) before 4.1.0 allows CommonController.ClearCache, ClearDatabaseCache, RestartApplication, and ScheduleTaskController.Edit open redirect.
5.8
2021-05-12 CVE-2021-32607 Unspecified vulnerability in Smartstore
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
network
low complexity
smartstore
critical
9.8
2021-05-12 CVE-2021-32608 Unspecified vulnerability in Smartstore
An issue was discovered in Smartstore (aka SmartStoreNET) through 4.1.1.
network
low complexity
smartstore
critical
9.8
2021-02-19 CVE-2020-27997 Improper Privilege Management vulnerability in Smartstore Smartstorenet
An issue was discovered in SmartStoreNET before 4.1.0.
6.8
2020-10-29 CVE-2020-27996 Unspecified vulnerability in Smartstore Smartstorenet
An issue was discovered in SmartStoreNET before 4.0.1.
network
low complexity
smartstore
6.5
2020-10-08 CVE-2020-15243 Missing Authentication for Critical Function vulnerability in Smartstore 4.0.0/4.0.1
Affected versions of Smartstore have a missing WebApi Authentication attribute.
network
low complexity
smartstore CWE-306
7.5