Cisco Secure Email: remote code execution
Critical9.8CVE-2026-76461 · Published Sep 14, 2026 · updated Sep 15, 2026
A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system. This vulnerability is due to insufficient validation in the email parsing logic. An attacker could exploit this vulnerability by sending a crafted email message that contains malicious SQL statements through an affected device. A successful exploit could allow the attacker to execute arbitrary SQL statements, leading to command execution with root privileges on the underlying operating system.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Cisco Secure Email Product | <= 14.0.0-698 | No fix yet |
| <= 13.5.1-277 | No fix yet | |
| <= 13.0.0-392 | No fix yet | |
| <= 14.2.0-620 | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-89
More Cisco advisories
All Cisco| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 16 | Cisco Identity Services Engine Software: remote code execution | Critical9.9 | No fix yet |
| Sep 14 | Cisco Secure Email: path traversal | Critical9.8 | No fix yet |
| Sep 14 | Cisco Secure Email and Web Manager: improper access control | Critical9.8 | No fix yet |
| Sep 14 | Cisco Secure Email: improper quantity validation | High7.5 | No fix yet |
| Sep 14 | As part of Cisco's ongoing commitment to proactive security and product quality | Critical9.8 | No fix yet |
| Sep 14 | As part of Cisco's ongoing commitment to proactive security and product quality | Critical9.8 | No fix yet |