All CVEs
Vulnerability intelligence

CVE-2026-44128

SEPPmail AG Secure Email Gateway CWE-95

SEPPmail Secure Email Gateway before version 15.0.2.1 allows unauthenticated remote code execution in the new GINA UI because an endpoint passes attacker-controlled input from a parameter to Perl's eval.

CVSS Score
9.3
Critical
EPSS — Exploit Probability
0.8%
Riskier than 56% of all CVEs · checked 2026-09-09
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
NVD entry PoC / advisory

1 article across 1 outlet · first covered May 19, 2026 · latest May 19, 2026

Coverage timeline

Related CVEs — SEPPmail AG