← volver
CVE-2026-7864mediumCWE-497

Exposure of Sensitive Information to an Unauthorized Actor

18Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 6.9epss 17%
probabilidad de explotación
17%top 3% de las CVE
explotación observada
noninguna fuente lo reporta
SEPPmail Secure Email Gateway before version 15.0.4 exposes server environment variables through an unauthenticated endpoint in the new GINA UI, allowing remote attackers to obtain sensitive system information.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N