SEPPmail Secure Email Gateway
cpe:2.3:a:seppmail:seppmail:*:*:*:*:*:*:*
- < 15.0.1
A path traversal vulnerability has been identified in the GINA web interface of SEPPmail Secure Email Gateway, affecting versions prior to 15.0.1. The vulnerability arises because the application does not properly validate attachment filenames in GINA-encrypted emails. This flaw allows an attacker to access files stored on the gateway.
Exploitation of this vulnerability could lead to unauthorized access to files on the SEPPmail Secure Email Gateway.
Users can update to SEPPmail Secure Email Gateway version 15.0.1 or later, where this vulnerability has been fixed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.