Cross-Domain Referer Leakage in SmarterStats by SmarterTools
CVE-2011-4751
Currently unrated
What is CVE-2011-4751?
The vulnerability in SmarterStats 6.2.4100 arises from the improper handling of GET requests with query strings, particularly for the frmGettingStarted.aspx page. This flaw results in generating web pages that inadvertently expose external links. As a consequence, remote attackers can exploit this issue to retrieve sensitive information via web-server access logs or Referer logs, leading to potential data exposure through a cross-domain referer leakage scenario.
References
Timeline
Vulnerability published
Vulnerability Reserved