Skip to content
Noroxi

SEPPmail records

26 published records for vendor seppmail.

All records

26 records
  • SEPPmail User Web Interface Arbitrary File Write to RCE

    CriticalCVSS 10.0No exploitEPSS 1%

    seppmail · seppmailMar 5, 2026

  • SEPPmail Secure Email Gateway before version 15.0.1 insufficiently neutralizes the PDF encryption password, allowing OS command execution.

    CriticalCVSS 9.5No exploitEPSS 1%

    seppmail · seppmailMar 4, 2026

  • zip_attachments Path Traversal

    CriticalCVSS 9.3No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • SEPPmail through 12.1.17 allows command injection within the Admin Portal.

    HighCVSS 8.8No exploitEPSS 1%

    seppmail · seppmailApr 28, 2025

  • S/MIME Decryption Tag Sanitization Bypass

    HighCVSS 8.2No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • GINA State Confusion Account Takeover

    HighCVSS 7.8No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • S/MIME Decryption Impersonation

    HighCVSS 7.8No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • Header Email Address Parsing

    HighCVSS 7.8No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • Unicode Subject Tags

    HighCVSS 7.8No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • CVE-2026-2748
    31Monitor

    S/MIME Certificate Subject Whitespace

    HighCVSS 7.8No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • Bounded Subject Tag Sanitization

    HighCVSS 7.7No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • S/MIME Signature Additional Certificate

    HighCVSS 7.7No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • CVE-2026-2747
    27Monitor

    PGP Mixed Plaintext and Encrypted Content

    MediumCVSS 6.9No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • PGP Signature Reflection

    MediumCVSS 6.9No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • CVE-2026-2746
    27Monitor

    Missing PGP Signature Tag

    MediumCVSS 6.9No exploitEPSS 0%

    seppmail · seppmailMar 4, 2026

  • ESWmail-Verify Bypass

    MediumCVSS 6.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • PGP Decryption Sender LDAP Injection

    MediumCVSS 6.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • Plaintext secure-mail.html

    MediumCVSS 6.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • The SEPPmail solution is vulnerable to a Cross-Site Scripting vulnerability (XSS), because user input is not correctly encoded in HTML attri

    MediumCVSS 6.1No exploitEPSS 0%

    seppmail · seppmailNov 18, 2022

  • SEPPMail's web frontend, user input is not embedded correctly in the web page and therefore leads to cross-site scripting vulnerabilities (X

    MediumCVSS 6.1No exploitEPSS 0%

    seppmail · seppmailNov 30, 2022

  • Webmail Password Tag Sanitization Bypass

    MediumCVSS 5.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to upload PGP keys with UIDs that do not match their email address.

    MediumCVSS 5.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • SEPPmail Secure Email Gateway before version 15.0.3 allows an external user to modify GINA webdomain metadata and bypass per-domain restrict

    MediumCVSS 5.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • Long Subject Untagging

    MediumCVSS 5.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026

  • CA Notification HTML Injection

    MediumCVSS 5.3No exploitEPSS 0%

    seppmail · secure email gatewayApr 2, 2026