Loading
Generated remediation guidance and an executive summary. No account required.
The (1) Admin/frmEmailReportSettings.aspx and (2) Admin/frmGeneralSettings.aspx components in the SmarterTools SmarterStats 6.0 web server generate web pages containing e-mail addresses, which allows remote attackers to obtain potentially sensitive information by reading the default values of form fields.
Use CWE-264, Smartertools vendor hub and Smarterstats product page to widen CVE-2011-2157 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2011-4752, CVE-2011-2159 and CVE-2011-2158 for nearby disclosures in the same product family.