SEPPmail Secure Email Gateway S/MIME Header Injection Vulnerability

Vulnerability

A vulnerability exists in SEPPmail Secure Email Gateway versions prior to 15.0.1, where the application fails to properly sanitize headers from S/MIME protected MIME entities. This flaw allows attackers to manipulate trusted headers.

Impact

Exploitation of this vulnerability could lead to unauthorized control over S/MIME headers, potentially allowing for malicious manipulation of email content or behavior.

Remediation

Users can update to SEPPmail Secure Email Gateway version 15.0.1 or later, where this vulnerability has been addressed.

Added: Mar 4, 2026, 9:20 AM
Updated: Mar 4, 2026, 9:20 AM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
2.5
exploitability
6.8
remediation
7.7
relevance
3.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.