← Retour à la recherche de CVE

CVE-2026-7864

SEPPmail Secure Email Gateway

Description

SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through an unauthenticated endpoint in the new GINA UI, allowing remote attackers to obtain sensitive system information.

CVSS 6.9EPSS 17.015%Risque 1.75
Voir la source
Publication
2026-05-08 14:16:47
Versions concernées
<15.0.4
Type
Core software
Vecteur
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X