CVEs (14)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 7.8 HIGH· v4 5.3 MEDIUM· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to bypass subject sanitization and forge security tags using Unicode lookalike characters. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 7.8 HIGH· v4 9.1 CRITICAL· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 does not properly authenticate the inner message of S/MIME-encrypted MIME entities, allowing an attacker to control trusted headers. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 6.3 MEDIUM· v4 5.3 MEDIUM· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to forge a GINA-encrypted email. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 7.7 HIGH· v4 5.3 MEDIUM· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to bypass subject sanitization and forge tags such as [signed OK]. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 7.7 HIGH· v4 5.3 MEDIUM· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to cause attacker-controlled certificates to be used for future encryption to a victim by adding the certificates to S/MIME signatures. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 7.8 HIGH· v4 9.8 CRITICAL· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows account takeover by abusing GINA account initialization to reset a victim account password. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 6.3 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows attackers with a specially crafted email address to claim another user's PGP signature as their own. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 5.3 MEDIUM· v4 5.3 MEDIUM· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to hide security tags from users by crafting a long subject. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 5.3 MEDIUM· v4 6.1 MEDIUM· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to inject HTML into notification emails about new CA certificates. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 5.3 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to craft a password-tag that bypasses subject sanitization. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 5.3 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an external user to modify GINA webdomain metadata and bypass per-domain restrictions. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 5.3 MEDIUM· v4 9.1 CRITICAL· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to upload PGP keys with UIDs that do not match their email address. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 6.3 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker with access to a victim's GINA account to bypass a second-password check and read protected emails. |
1Seppmail 1Secure Email Gateway Jun 17, 2026 Apr 2, 2026 4.9 MEDIUM· v4 7.5 HIGH· v3 N/A· v2 SEPPmail Secure Email Gateway before version 15.0.3 allows attackers with a specially crafted email address to read the contents of emails encrypted for other users. |