GHSA-987g-rmgr-mpfxMedium
SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through...
🔗 CVE IDs covered (1)
📋 Description
SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through an unauthenticated endpoint in the new GINA UI, allowing remote attackers to obtain sensitive system information.
🔗 References (4)
- https://nvd.nist.gov/vuln/detail/CVE-2026-7864
- https://downloads.seppmail.com/extrelnotes/150/ERN15.0.html#security
- https://labs.infoguard.ch/posts/seppmail_secure_e-mail_gateway_rce_vulnerabilities_cve-2026-2743_cve-2026-7864_cve-2026-44127_cve-2026-44128
- https://github.com/advisories/GHSA-987g-rmgr-mpfx