Vulnerability index

Browse CVEs

26 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Secure Email Gateway CRITICAL 9.1
CVE-2026-29143

SEPPmail Secure Email Gateway before version 15.0.3 does not properly authenticate the inner message of S/MIME-encrypted MIME entities, allowing an a…

Fix: 15.0.3+
Fix from $2,300 2026-04-02
Secure Email Gateway MEDIUM 5.3
CVE-2026-29144

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to bypass subject sanitization and forge security tags using Unicode lookalike…

Fix: 15.0.3+
Fix from $1,600 2026-04-02
Secure Email Gateway CRITICAL 9.8
CVE-2026-29139

SEPPmail Secure Email Gateway before version 15.0.3 allows account takeover by abusing GINA account initialization to reset a victim account password.

Fix: 15.0.3+
Fix from $2,300 2026-04-02
Secure Email Gateway HIGH 7.5
CVE-2026-29138

SEPPmail Secure Email Gateway before version 15.0.3 allows attackers with a specially crafted email address to claim another user's PGP signature as …

Fix: 15.0.3+
Fix from $1,950 2026-04-02
Secure Email Gateway MEDIUM 5.3
CVE-2026-29137

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to hide security tags from users by crafting a long subject.

Fix: 15.0.3+
Fix from $1,600 2026-04-02
Secure Email Gateway MEDIUM 5.3
CVE-2026-29140

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to cause attacker-controlled certificates to be used for future encryption to …

Fix: 15.0.3+
Fix from $1,600 2026-04-02
Secure Email Gateway MEDIUM 5.3
CVE-2026-29141

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to bypass subject sanitization and forge tags such as [signed OK].

Fix: 15.0.3+
Fix from $1,600 2026-04-02
Secure Email Gateway MEDIUM 5.3
CVE-2026-29142

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to forge a GINA-encrypted email.

Fix: 15.0.3+
Fix from $1,600 2026-04-02
Secure Email Gateway CRITICAL 9.1
CVE-2026-29133

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to upload PGP keys with UIDs that do not match their email address.

Fix: 15.0.3+
Fix from $2,300 2026-04-02
Secure Email Gateway HIGH 7.5
CVE-2026-29131

SEPPmail Secure Email Gateway before version 15.0.3 allows attackers with a specially crafted email address to read the contents of emails encrypted …

Fix: 15.0.3+
Fix from $1,950 2026-04-02
Secure Email Gateway HIGH 7.5
CVE-2026-29132

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker with access to a victim's GINA account to bypass a second-password check and r…

Fix: 15.0.3+
Fix from $1,950 2026-04-02
Secure Email Gateway HIGH 7.5
CVE-2026-29134

SEPPmail Secure Email Gateway before version 15.0.3 allows an external user to modify GINA webdomain metadata and bypass per-domain restrictions.

Fix: 15.0.3+
Fix from $1,950 2026-04-02
Secure Email Gateway HIGH 7.5
CVE-2026-29135

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to craft a password-tag that bypasses subject sanitization.

Fix: 15.0.3+
Fix from $1,950 2026-04-02
Secure Email Gateway MEDIUM 6.1
CVE-2026-29136

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to inject HTML into notification emails about new CA certificates.

Fix: 15.0.3+
Fix from $1,600 2026-04-02
Seppmail CRITICAL 9.8
CVE-2026-2743

Arbitrary File Write via Path Traversal upload to Remote Code Execution in SeppMail User Web Interface. The affected feature is the large file transf…

Fix: after 15.0.2.1
Fix from $2,300 2026-03-05
Seppmail HIGH 7.5
CVE-2026-2747

SEPPmail Secure Email Gateway before version 15.0.1 decrypts inline PGP messages without isolating them from surrounding unencrypted content, allowin…

Fix: 15.0.1+
Fix from $1,950 2026-03-04
Seppmail MEDIUM 5.3
CVE-2026-2748

SEPPmail Secure Email Gateway before version 15.0.1 improperly validates S/MIME certificates issued for email addresses containing whitespaces, allow…

Fix: 15.0.1+
Fix from $1,600 2026-03-04
Seppmail MEDIUM 5.3
CVE-2026-2746

SEPPmail Secure Email Gateway before version 15.0.1 does not properly communicate PGP signature verification results, leaving users unable to detect …

Fix: 15.0.1+
Fix from $1,600 2026-03-04
Seppmail HIGH 7.5
CVE-2026-27442

The GINA web interface in SEPPmail Secure Email Gateway before version 15.0.1 does not properly check attachment filenames in GINA-encrypted emails, …

Fix: 15.0.1+
Fix from $1,950 2026-03-04
Seppmail HIGH 7.5
CVE-2026-27443

SEPPmail Secure Email Gateway before version 15.0.1 does not properly sanitize the headers from S/MIME protected MIME entities, allowing an attacker …

Fix: 15.0.1+
Fix from $1,950 2026-03-04
Seppmail HIGH 7.5
CVE-2026-27444

SEPPmail Secure Email Gateway before version 15.0.1 incorrectly interprets email addresses in the email headers, causing an interpretation conflict w…

Fix: 15.0.1+
Fix from $1,950 2026-03-04
Seppmail MEDIUM 5.3
CVE-2026-27445

SEPPmail Secure Email Gateway before version 15.0.1 does not properly verify that a PGP signature was generated by the expected key, allowing signatu…

Fix: 15.0.1+
Fix from $1,600 2026-03-04
Seppmail CRITICAL 9.8
CVE-2026-27441

SEPPmail Secure Email Gateway before version 15.0.1 insufficiently neutralizes the PDF encryption password, allowing OS command execution.

Fix: 15.0.1+
Fix from $2,300 2026-03-04
Seppmail HIGH 8.8
CVE-2022-41871

SEPPmail through 12.1.17 allows command injection within the Admin Portal. An authenticated attacker is able to execute arbitrary code in the context…

Fix: after 12.1.17
Fix from $1,950 2025-04-28
Seppmail MEDIUM 6.1
CVE-2021-31740

SEPPMail's web frontend, user input is not embedded correctly in the web page and therefore leads to cross-site scripting vulnerabilities (XSS).

No fix yet
Fix from $1,600 2022-11-30
Seppmail MEDIUM 6.1
CVE-2021-31739

The SEPPmail solution is vulnerable to a Cross-Site Scripting vulnerability (XSS), because user input is not correctly encoded in HTML attributes whe…

No fix yet
Fix from $1,600 2022-11-18