Improper Neutralization in Cisco Secure Email Gateway and Web Manager
CVE-2026-76443

9.8CRITICAL

Key Information:

Vendor

Cisco

Vendor
CVE Published:
14 September 2026

Badges

👾 Exploit Exists

What is CVE-2026-76443?

This vulnerability affects Cisco Secure Email Gateway and Cisco Secure Email and Web Manager, stemming from issues of improper neutralization categorized under CWE-707. A thorough internal security review by Cisco's engineering team identified these weaknesses, leading to the implementation of software hardening releases. It is crucial for users to apply these updates to enhance the security posture of their email systems and prevent potential exploitation.

Affected Version(s)

Cisco Secure Email 14.0.0-698

Cisco Secure Email 13.5.1-277

Cisco Secure Email 13.0.0-392

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.