Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

InfoGuard Labs disclosed seven vulnerabilities in SEPPMail Secure E-Mail Gateway, including a critical path traversal flaw and multiple unauthenticated remote code execution vectors, affecting all versions prior to 15.0.4. The aggregate CVSS severity is 9.5. A publicly documented exploit chain allows an unauthenticated attacker to take full control of the appliance and intercept all mail traffic it processes. Organizations running SEPPMail must upgrade to version 15.0.4 immediately; prior partial patches (15.0.2.1 through 15.0.3) do not fully remediate the risk.

Author

Tech Jacks Solutions