216.73.217.22

CVE-2025-25235

· Published 11/08/2025 22:15 · Modified 12/08/2025 14:25

Labels: CVE-2025-25235 2025-08-11CVE-2025-25235CWE-918de5a6978-88fe-4c27-a7df-d0d5b52d5b52

Essential information

Published
11/08/2025 22:15
Modified
12/08/2025 14:25
Author
Creator
CVSS
8.6 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

CVSS metrics

Description

Server-Side Request Forgery (SSRF) in Omnissa Secure Email Gateway (SEG) in SEG prior to 2.32 running on Windows and SEG prior to 2503 running on UAG allows routing of network traffic such as HTTP requests to internal networks.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
de5a6978-88fe-4c27-a7df-d0d5b52d5b52
NVD
View on NVD

Affected products (CPE)

ProductCPE
omnissa / secure email gateway cpe:2.3:a:omnissa:secure_email_gateway:<2.32:*:*:*:*:*:*:*
omnissa / secure email gateway cpe:2.3:a:omnissa:secure_email_gateway:<2503:*:*:*:*:*:*:*

References