SmarterTrack 7922 contains an information disclosure vulnerability in the Chat Management search form that reveals agent identification details. Attackers can access the vulnerable /Management/Chat/frmChatSearch.aspx endpoint to retrieve agents' first and last names along with their unique identifiers.
| Software | From | Fixed in |
|---|---|---|
| smartertools / smartertrack | 10.0 | 10.0.x |
| smartertools / smartertrack | 14.0 | 14.0.x |