CVE-2026-8811EPSS p35.8%

CVE-2026-8811CVE-2026-8811

Description

SEPPmail versions before 15.0.5 allow improper handling of attachment filenames during encrypted PDF generation. An attacker can exploit this to create new files outside the intended directory, potentially placing files in web-accessible locations.

Scoring

EPSS0.44% probability of exploitation · percentile 35.8% · 2026-10-05T12:00:23Z
Last modified2026-06-18
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.