CVE 8.6 HIGH

Omnissa Secure Email Gateway (SEG) updates address Server-Side Request Forgery (SSRF) vulnerability_CVE-2025-25235

8.6 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N

Description

Server-Side Request Forgery (SSRF) in Omnissa Secure Email Gateway (SEG) in SEG prior to 2.32 running on Windows and SEG prior to 2503 running on UAG allows routing of network traffic such as HTTP requests to internal networks.

Basic Information

ID CVE-2025-25235
Source Omnissa
Published Aug 11, 2025 at 21:47

Affected Product

Vendor Omnissa
Product Secure Email Gateway
Version 2.32 and later

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.