A vulnerability in IceWarp EPOS (CVE not specified) allows an attacker to remotely disclose information, with a CVSS Base Score of 7.5 (High). Affected versions are IceWarp EPOS prior to 14.3.0.7, prior to 14.2.0.15, and prior to 14.1.0.21. A mitigation is available, though specific patch versions or workaround details are not provided in the advisory.
[WID-SEC-2026-2021] IceWarp EPOS: Schwachstelle ermöglicht Offenlegung von Informationen CVSS Base Score 7.5 (hoch) CVSS Temporal Score 6.5 (mittel) Remoteangriff ja Datum 21.06.2026 Stand 22.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux UNIX Windows Produktbeschreibung Die IceWarp-Plattform und kombiniert E-Mail, Kalender, Chat, Videokonferenzen, Dateiablage und Online-Dokumentbearbeitung in einer integrierten Arbeitsumgebung. Produkte 21.06.2026 IceWarp EPOS <14.3.0.7 IceWarp EPOS <14.2.0.15 IceWarp EPOS <14.1.0.21 Angriff Angriff Ein Angreifer kann eine Schwachstelle in IceWarp EPOS ausnutzen, um Informationen offenzulegen. CVE Informationen Versionshistorie Feedback zum Advisory geben