← Retour à la recherche de CVE

CVE-2026-44126

SEPPmail Secure Email Gateway

Description

SEPPmail Secure Email Gateway before version 15.0.4 insecurely deserializes untrusted data, which can be reached from the new GINA UI and may allow unauthenticated remote attackers to execute code via a crafted serialized object.

CVSS 9.2EPSS 0.47200000000000003%Risque 0.96
Voir la source
Publication
2026-05-08 14:16:45
Versions concernées
<15.0.4
Type
Installed app
Vecteur
CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X