SEPPmail Secure Email Gateway PGP Signature Verification Vulnerability

Vulnerability

A vulnerability exists in SEPPmail Secure Email Gateway versions prior to 15.0.1, where the application fails to accurately convey the results of PGP signature verification. This oversight prevents users from identifying forged emails.

Impact

The vulnerability could lead to users unknowingly accepting forged emails, as they cannot rely on the PGP signature verification process to detect fakes.

Remediation

Users can update to SEPPmail Secure Email Gateway version 15.0.1 or later, where this vulnerability has been addressed.

Added: Mar 4, 2026, 9:19 AM
Updated: Mar 4, 2026, 9:19 AM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
0.6
exploitability
7.6
remediation
0.0
relevance
3.5
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.