Executive brief
SEPPmail Secure Email Gateway, a solution used for encrypting and managing corporate email traffic, contains a vulnerability in its GINA web interface. An attacker can send specially crafted data to the system to manipulate how web pages are generated. This could allow an unauthorized person to execute malicious code on the gateway, potentially leading to the theft of sensitive emails, disruption of communications, or full control over the appliance.
Technical details
A server-side template injection (SSTI) vulnerability exists in the GINA V2 UI component of SEPPmail Secure Email Gateway. The flaw is located in a web endpoint that accepts attacker-controlled template input without proper neutralization of special elements (CWE-1336). A remote attacker can exploit this to execute arbitrary template expressions. Depending on the specific template plugins enabled within the environment, this can be escalated to full remote code execution (RCE) on the appliance. The vulnerability was addressed in version 15.0.4.
Affected products
- SEPPmail Secure Email Gateway before 15.0.4
Timeline
- 2026-04-24: patched: Fixed in version 15.0.4 bugfix release
- 2026-05-08: disclosed: Initial NVD publication
- 2026-05-18: advisory: Detailed technical advisory released by InfoGuard Labs