Omnissa Secure Email Gateway Server-Side Request Forgery Vulnerability

Vulnerability

A Server-Side Request Forgery (SSRF) vulnerability has been identified in Omnissa Secure Email Gateway (SEG) versions prior to 2.32 on Windows and prior to 2503 on UAG. This vulnerability allows the routing of network traffic, such as HTTP requests, to internal networks.

Impact

Exploitation of this vulnerability could lead to unauthorized access to internal network resources by routing external requests through the vulnerable server.

Added: Aug 11, 2025, 10:25 PM
Updated: Aug 11, 2025, 10:25 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.4
remediation
0.0
relevance
0.3
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.