Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Andrei Manole

#34698of 53,633
7.5Total CVSS
Vulnerabilities · 1
PT-2026-3147
7.5
2026-01-15
Smartertools · Smartertools Smartertrack · CVE-2020-36926
**Name of the Vulnerable Software and Affected Versions** SmarterTrack version 7922 **Description** The software contains an information disclosure issue in the Chat Management search form. This allows unauthorized access to agent identification details, specifically agents' first and last names and their unique identifiers. Attackers can exploit this by accessing the `/Management/Chat/frmChatSearch.aspx` endpoint. The vulnerable parameter is not explicitly mentioned. **Recommendations** Apply a fix to address the information disclosure in the Chat Management search form. Restrict access to the `/Management/Chat/frmChatSearch.aspx` endpoint.