SmarterTools SmarterTrack 7922 – ‘Multiple’ Information Disclosure

  • 作者: Andrei Manole
    日期: 2021-09-24
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/50328/
  • # Exploit Title: SmarterTools SmarterTrack 7922 - 'Multiple' Information Disclosure 
    # Google Dork: intext:"Powered by SmarterTrack"
    # Date: 23/01/2020
    # Exploit Author: Andrei Manole
    # Vendor Homepage: https://www.smartertools.com/
    # Software Link: https://www.smartertools.com/smartertrack
    # Version: TESTED ON10.x -> 14.x and to Build 7922 (set 9, 2021)
    # Tested on: Windows 10
    
    POC:
    VULNERABLE TARGET/Management/Chat/frmChatSearch.aspx
    This file disclosure all agents id and first name and second name