Beveiligingsadvies

CVE-2026-9592

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-17 13:51:54
Laatst bijgewerkt 2026-07-17 15:24:58
Toegewezen door NCSC.ch
CVSS-score 7.5
Status PUBLISHED

Beschrijving

SEPPmail Secure Email Gateway & SEPPmail Cloud before version 15.0.4.2 allows an attacker to replay & hijack a user session in the GINA web portal, as the session token is disclosed inside the URL and a HTTP header.