Cisco secure email
This hub aggregates every CVE we track for Cisco secure email, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
21
CVEs tracked
2
Critical
1
High
1
In CISA KEV
Severity distribution
MEDIUM17CRITICAL2LOW1HIGH1
Monthly trend
0
0
2
0
0
5
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Cisco secure email.
- CVE-2025-20393Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution VulnerabilityKEV10.0
- CVE-2025-20153Cisco ESA mail Bypass5.8
- CVE-2025-20207Cisco Secure Email Gateway, Cisco Secure Email and Web Appliance and Cisco Secure Web Appliance SNMP Polling Information Disclosure Vulnerability4.3
- CVE-2025-20185Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Privilege Escalation Vulnerability3.4
- CVE-2025-20184Cisco Secure Email and Web Manager and Secure Web Appliance Command Injection Vulnerability6.5
- CVE-2025-20180Cisco Secure Email and Web Manager and Secure Email Gateway Cross-Site Scripting Vulnerability4.8
- CVE-2020-3548Cisco Email Security Appliance Denial Of Service Vulnerability5.3
- CVE-2024-20504Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Stored Cross-Site Scripting Vulnerabilities5.4
- CVE-2024-20429A vulnerability in the web-based management interface of Cisco AsyncOS for Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary system commands on an affected dev...6.5
- CVE-2024-20401A vulnerability in the content scanning and message filtering features of Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to overwrite arbitrary files on the underlying o...9.8
- CVE-2024-20257A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an authenticated, remote attacker to conduct an XSS attack against a user ...4.8
- CVE-2024-20258A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Email Gateway could allow an unauthenticated, remote attacker to co...6.1
- CVE-2024-20392A vulnerability in the web-based management API of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack...6.1
- CVE-2020-26082A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass content filters that are...5.8
- CVE-2023-20075Vulnerability in the CLI of Cisco Secure Email Gateway could allow an authenticated, remote attacker to execute arbitrary commands. These vulnerability is due to improper input validation in the...6.0
Product normalization is registry-driven with AI assist and human review. How it works