¡¾·ì϶¹«¸æ¡¿SmarterMail δÊÚȨÎļþÉÏ´«·ì϶(CVE-2025-52691)
°ä²¼¹¦·ò 2025-12-30Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | SmarterMail δÊÚȨÎļþÉÏ´«·ì϶ | ||
CVE ID | CVE-2025-52691 | ||
·ì϶ÀàÐÍ | ËÁÒâÎļþÉÏ´« | ·¢ÏÖ¹¦·ò | 2025-12-30 |
·ì϶ÆÀ·Ö | 10 | ·ì϶µÈ¼¶ | ÑϳÁ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | Òѹ«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
SmarterMailÊÇSmarterTools¹«Ë¾ÍƳöµÄÒ»¿î»ùÓÚWindowsƽ̨µÄÓʼþ·þÎñÆ÷Èí¼þ£¬Ö§³ÖSMTP¡¢POP3¡¢IMAP¼°WebMailµÈÖ÷ÌâÓʼþÖ°ÄÜ£¬¿í·ºÀûÓÃÓÚÖÐÓׯóÒµºÍ×Ô½¨Óʼþϵͳ³¡¾°¡£¸Ã²úÆ·Ìṩ·´À¬»øÓʼþ¡¢·À²¡¶¾¡¢¶àÓòÖÎÀíºÍÓû§È¨ÏÞ½ÚÔìµÈÄÜÁ¦£¬ÒÔ²¿Êð½Ã½Ý¡¢ÊÚȨ³É±¾Ïà¶Ô½ÏµÍÎªÌØµã£¬µ«¶ÔÔËάÓ밲ȫÅäÖÃÒªÇó½Ï¸ß¡£
2025Äê12ÔÂ30ÈÕ£¬GA»Æ½ð¼×¼¯ÍÅVSRC¼à²âµ½SmarterMail´æÔÚδÊÚȨÎļþÉÏ´«·ì϶¡£·ì϶³ÉÒòÔÚÓÚ·þÎñÆ÷¶ÔÎļþÉÏ´«¹ý³ÌÖеİ²È«Ð£Ñé²»¼°£¬µ¼Ö¹¥»÷ÕßÔÚÎÞÐèÈκÎÉí·ÝÈÏÖ¤µÄÇé¿öÏ£¬¼´¿ÉÏòÓʼþ·þÎñÆ÷ËÁÒâõè¾¶ÉÏ´«¶ñÒâÎļþ¡£Èô±»³É¹¦ÀûÓ㬹¥»÷Õß¿ÉÄܽøÒ»²½Ö´ÐÐËÁÒâ´úÂ룬´Ó¶øÆëÈ«½ÚÔì·þÎñÆ÷£¬Ôì³ÉÓʼþÊý¾Ýй¶¡¢ÏµÍ³±»Ö²ÈëºóÃÅ»òÒµÎñ·þÎñÖжϵÈÑϳÁºó¹û£¬·ì϶ÆÀ·Ö10·Ö£¬·ì϶¼¶±ðÑϳÁ¡£
¶þ¡¢Ó°ÏìÁìÓò
SmarterMail <= 9406
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://www.smartertools.com/smartermail/downloads/
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ