216.73.216.226

CVE-2026-44128

· Published 08/05/2026 14:16 · Modified 08/05/2026 15:51

Labels: CVE-2026-44128 2026-05-08CVE-2026-44128CWE-95[email protected]

Essential information

Published
08/05/2026 14:16
Modified
08/05/2026 15:51
Author
Creator
CVSS
9.3 CRITICAL (v3) 9.3 CRITICAL (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

SEPPmail Secure Email Gateway before version 15.0.2.1 allows unauthenticated remote code execution in the new GINA UI because an endpoint passes attacker-controlled input from a parameter to Perl's eval.

NVD status

Status
Deferred — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
seppmail / secure email gateway cpe:2.3:a:seppmail:secure_email_gateway:<15.0.2.1:*:*:*:*:*:*:*

References