Cisco secure email and web manager
This hub aggregates every CVE we track for Cisco secure email and web manager, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
20
CVEs tracked
2
Critical
1
High
1
In CISA KEV
Severity distribution
MEDIUM16CRITICAL2LOW1HIGH1
Monthly trend
0
0
2
0
0
3
1
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Cisco secure email and web manager.
- CVE-2025-20393Cisco Secure Email Gateway and Cisco Secure Email and Web Manager Remote Command Execution VulnerabilityKEV10.0
- CVE-2020-3122Cisco Content Security Management Appliance Information Disclosure Vulnerability5.3
- CVE-2025-20207Cisco Secure Email Gateway, Cisco Secure Email and Web Appliance and Cisco Secure Web Appliance SNMP Polling Information Disclosure Vulnerability4.3
- CVE-2025-20185Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Privilege Escalation Vulnerability3.4
- CVE-2025-20180Cisco Secure Email and Web Manager and Secure Email Gateway Cross-Site Scripting Vulnerability4.8
- CVE-2021-1425Cisco Cisco Email Security Appliance and Content Security Management Appliance Information Disclosure Vulnerability4.3
- CVE-2024-20504Cisco Secure Email and Web Manager, Secure Email Gateway, and Secure Web Appliance Stored Cross-Site Scripting Vulnerabilities5.4
- CVE-2024-20383Cisco Secure Email and Web Manager Stored Cross-Site Scripting Vulnerability4.8
- CVE-2024-20256A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Web Appliance could allow an authenticated, remote attacker to cond...4.8
- CVE-2024-20258A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager and Secure Email Gateway could allow an unauthenticated, remote attacker to co...6.1
- CVE-2023-20119A vulnerability in the web-based management interface of Cisco AsyncOS Software for Cisco Secure Email and Web Manager, formerly known as Content Security Management Appliance (SMA) could allow an ...6.1
- CVE-2023-20009A vulnerability in the Web UI and administrative CLI of the Cisco Secure Email Gateway (ESA) and Cisco Secure Email and Web Manager (SMA) could allow an authenticated remote attacker and or authent...6.5
- CVE-2022-20772A vulnerability in Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager could allow an unauthenticated, remote attacker to conduct an HTTP response splitting attack. This ...4.7
- CVE-2022-20942A vulnerability in the web-based management interface of Cisco Email Security Appliance (ESA), Cisco Secure Email and Web Manager, and Cisco Secure Web Appliance, formerly known as Cisco Web Securi...6.5
- CVE-2022-20868A vulnerability in the web-based management interface of Cisco Email Security Appliance, Cisco Secure Email and Web Manager and Cisco Secure Web Appliance could allow an authenticated, remote attac...4.7
Product normalization is registry-driven with AI assist and human review. How it works