Path Traversal Vulnerability in Cisco Secure Email Gateway and Manager
CVE-2026-76440

9.8CRITICAL

Key Information:

Vendor

Cisco

Vendor
CVE Published:
14 September 2026

Badges

👾 Exploit Exists

What is CVE-2026-76440?

The vulnerability identified in the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager is related to path traversal weaknesses. These issues could potentially allow unauthorized access to files on the system. Cisco has proactively addressed these vulnerabilities through software hardening releases, ensuring enhanced security for users. The vulnerabilities are part of a broader review process aimed at maintaining product integrity and safeguarding users against exploitation.

Affected Version(s)

Cisco Secure Email 14.0.0-698

Cisco Secure Email 13.5.1-277

Cisco Secure Email 13.0.0-392

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.