CVE-2026-84830: OS command injection in privileged configuration handling
Published Sep 3, 2026
·Updated
SEPPmail Secure Email Gateway before 15.0.7 contains a command injection vulnerability that allows authenticated administrators to execute commands with elevated privileges.
Affected Software
1 affected component
SEPPmail Secure Email Gateway<15.0.7
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
SEPPmail Secure Email Gatewayto a version that resolves this vulnerability.Fixed in 15.0.7
Event History
Sep 3, 2026
CVE Published
via MITRE·08:45 AM
Data Sourced
via MITRE·08:45 AM
DescriptionWeakness
Frequently Asked Questions
1
Who can exploit this vulnerability?
An authenticated administrator of a vulnerable SEPPmail Secure Email Gateway can exploit it. The issue permits command execution with elevated privileges.
2
Which versions are affected?
SEPPmail Secure Email Gateway versions before 15.0.7 are affected. Version 15.0.7 is identified as the fixed release boundary.