CVE-2026-29140

SEPPmail Secure Email Gateway before version 15.0.3 allows an attacker to cause attacker-controlled certificates to be used for future encryption to a victim by adding the certificates to S/MIME signatures.
Configurations

Configuration 1 (hide)

cpe:2.3:a:seppmail:secure_email_gateway:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-02 09:16

Updated : 2026-06-17 10:29


NVD link : CVE-2026-29140

Mitre link : CVE-2026-29140

CVE.ORG link : CVE-2026-29140


JSON object : View

Products Affected

seppmail

  • secure_email_gateway
CWE
CWE-295

Improper Certificate Validation