Known vulnerabilities in Secure Email Gateway
Vendor:
Cisco Systems, Inc
Software:
Secure Email Gateway
Software CPE:
cpe:2.3:a:cisco_systems:secure_email_gateway:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
1
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU120181 - Improper input validation CVE-2025-20393 |
CWE-20 | Critical | 15.0.5-016, 15.5.4-012, 16.0.4-016 | 17.12.2025 |
SB2025121749 |
||
| #VU103668 - Exposure of sensitive information to an unauthorized actor CVE-2025-20207 |
CWE-200 | Medium | 15.0.3-002, 15.5.2-018, 16.0.0-050 | 06.02.2025 |
SB2025020619 |
||
| #VU94506 - Server-Side Request Forgery (SSRF) CVE-2024-20429 |
CWE-918 | Low | 14.2.3-027, 15.0.0-097, 15.5.1-055 | 17.07.2024 |
SB20240717138 |
||
| #VU94505 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-20401 |
CWE-22 | Critical | 13.0.5-007, 13.5.4-038, 14.2.2-004, 14.3.0-032, 15.0.0-104, 15.0.1-030, 15.5.1-055 | 17.07.2024 |
SB20240717137 |
||
| #VU64421 - Improper Authentication CVE-2022-20798 |
CWE-287 | Critical | - | 15.06.2022 |
SB2022061590 |