← Späť na vyhľadávanie CVE

CVE-2026-7864

SEPPmail Secure Email Gateway

Popis

SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through an unauthenticated endpoint in the new GINA UI, allowing remote attackers to obtain sensitive system information.

CVSS 6.9EPSS 17.015%Riziko 1.75
Zobraziť zdroj
Zverejnené
2026-05-08 14:16:47
Dotknuté verzie
<15.0.4
Typ
Core software
Vektor
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X