Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2rg6-hxw2-6rh8

Опубликовано: 17 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.5

Описание

SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the session token is disclosed inside the URL and a HTTP header.

SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the session token is disclosed inside the URL and a HTTP header.

EPSS

Процентиль: 5%
0.00153
Низкий

7.5 High

CVSS4

Дефекты

CWE-598

Связанные уязвимости

nvd
14 дней назад

SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the session token is disclosed inside the URL and a HTTP header.

EPSS

Процентиль: 5%
0.00153
Низкий

7.5 High

CVSS4

Дефекты

CWE-598