SEPPmail Secure Email Gateway Path Traversal Vulnerability in GINA Web Interface

Vulnerability

A path traversal vulnerability has been identified in the GINA web interface of SEPPmail Secure Email Gateway, affecting versions prior to 15.0.1. The vulnerability arises because the application does not properly validate attachment filenames in GINA-encrypted emails. This flaw allows an attacker to access files stored on the gateway.

Impact

Exploitation of this vulnerability could lead to unauthorized access to files on the SEPPmail Secure Email Gateway.

Remediation

Users can update to SEPPmail Secure Email Gateway version 15.0.1 or later, where this vulnerability has been fixed.

Added: Mar 4, 2026, 9:20 AM
Updated: Mar 4, 2026, 9:20 AM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
2.5
exploitability
7.6
remediation
7.7
relevance
3.5
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.