CVE-2026-2743

Severity CVSS v4.0:
CRITICAL
Type:
CWE-22 Path Traversal
Publication date:
05/03/2026
Last modified:
19/05/2026

Description

Arbitrary File Write via Path Traversal upload to Remote Code Execution in SeppMail User Web Interface. The affected feature is the large file transfer (LFT). <br /> <br /> This issue affects SeppMail: 15.0.2.1 and before

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:seppmail:seppmail:*:*:*:*:*:*:*:* 15.0.2.1 (including)