CVE-2026-61638 | ellite Wallos up to 4.9.5 Email Notification testemailnotifications.php smtpaddress/smtpport server-side request forgery
A vulnerability classified as problematic was found in ellite Wallos up to 4.9.5. This affects an unknown function of the file /endpoints/notifications/testemailnotifications.php of the component Email Notification. Such manipulation of the argument smtpaddress/smtpport leads to server-side request forgery.
This vulnerability is referenced as CVE-2026-61638. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More