Cross-Domain Referer Leakage in SmarterStats by SmarterTools
CVE-2011-4751

Currently unrated

Key Information:

Vendor
CVE Published:
16 December 2011

What is CVE-2011-4751?

The vulnerability in SmarterStats 6.2.4100 arises from the improper handling of GET requests with query strings, particularly for the frmGettingStarted.aspx page. This flaw results in generating web pages that inadvertently expose external links. As a consequence, remote attackers can exploit this issue to retrieve sensitive information via web-server access logs or Referer logs, leading to potential data exposure through a cross-domain referer leakage scenario.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2011-4751 : Cross-Domain Referer Leakage in SmarterStats by SmarterTools