216.73.216.36

CVE-2026-44125

· Published 08/05/2026 14:16 · Modified 08/05/2026 15:51

Labels: CVE-2026-44125 2026-05-08CVE-2026-44125CWE-862[email protected]

Essential information

Published
08/05/2026 14:16
Modified
08/05/2026 15:51
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

SEPPmail Secure Email Gateway before version 15.0.4 fails to enforce authorization checks for multiple endpoints in the new GINA UI, allowing unauthenticated remote attackers to access functionality that should require a valid session.

NVD status

Status
Deferred — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
seppmail / seppmail secure email gateway cpe:2.3:a:seppmail:seppmail_secure_email_gateway:<15.0.4:*:*:*:*:*:*:*

References