Cisco
Cisco Secure Email Gateway: vulnerabilities and CVEs
Cisco Secure Email Gateway has 11 published vulnerabilities, 5 of them in the last 12 months. 5 are rated critical and 0 are listed by CISA as actively exploited.
CVEs11
Last 12 months5
Critical5
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-76443 | Critical (9.8) | 0.53% | — | Sep 14, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security… |
| CVE-2026-76442 | High (7.5) | 0.47% | — | Sep 14, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security… |
| CVE-2026-76441 | Critical (9.8) | 0.53% | — | Sep 14, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security… |
| CVE-2026-76440 | Critical (9.8) | 0.62% | — | Sep 14, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security… |
| CVE-2026-20353 | Critical (9.8) | 0.40% | — | Sep 14, 2026 | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security… |
| CVE-2025-20153 | Medium (5.3) | 0.36% | — | Feb 19, 2025 | This vulnerability is due to improper handling of email that passes through an affected device. An attacker could exploit this vulnerability by sending a crafted email through the affected device. A successful exploit… |
| CVE-2025-20207 | Medium (4.3) | 0.34% | — | Feb 5, 2025 | A vulnerability in Simple Network Management Protocol (SNMP) polling for Cisco Secure Email and Web Manager, Cisco Secure Email Gateway, and Cisco Secure Web Appliance could allow an authenticated, remote attacker to… |
| CVE-2024-20401 | Critical (9.8) | 2.3% | — | Jul 17, 2024 | A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to overwrite arbitrary files on the underlying operating system. This… |
| CVE-2023-20120 | Medium (6.1) | 0.47% | — | Jun 28, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager; Cisco Secure Email Gateway, formerly Cisco Email Security Appliance (ESA); and Cisco… |
| CVE-2023-20119 | Medium (6.1) | 0.51% | — | Jun 28, 2023 | A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, formerly known as Content Security Management Appliance (SMA) could allow an unauthenticated,… |
| CVE-2023-20028 | Medium (5.4) | 0.47% | — | Jun 28, 2023 | Multiple vulnerabilities in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager; Cisco Secure Email Gateway, formerly Cisco Email Security Appliance (ESA); and Cisco… |