THREAT OPS › Threat News › Cisco Secure Email Gateway SQL Injection Vulnerability
Cisco Secure Email Gateway SQL Injection Vulnerability
<p>A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with <em>root</em> privileges on the underlying operating system.</p> <p>This vulnerability is due to insufficient validation in the email parsing logic. An attacker could exploit this vulnerability by sending a crafted email
Indicators of compromise
- CVE-2026-76461cve