CVE-2026-2743 PUBLISHED

SEPPmail User Web Interface Arbitrary File Write to RCE

Assigner: NCSC.ch
Reserved: 19.02.2026 Published: 05.03.2026 Updated: 05.03.2026

Arbitrary File Write via Path Traversal upload to Remote Code Execution in SeppMail User Web Interface. The affected feature is the large file transfer (LFT). This issue affects SeppMail: 15.0.2.1 and before

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:A/AU:Y
CVSS Score: 10

Product Status

Vendor SeppMail
Product SeppMail
Versions Default: unknown
  • affected from unknown to 15.0.2.1 (incl.)

Credits

  • Manuel Feifel and Dario Weiss of InfoGuard Labs finder

References

Problem Types

  • CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE
  • CWE-434 Unrestricted Upload of File with Dangerous Type CWE

Impacts

  • CAPEC-242 Code Injection