Documented CVEs
2 vulnerabilities cataloged in the Hermes intelligence repository.
| Parameter | Technical Specification |
|---|---|
| Official Name | Cisco Secure Email Gateway |
| Vendor / Project | cisco |
| Canonical ID | cisco:secure_email |
| Versioning Scheme | generic |
| CPE Identifiers | cpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:*cpe:2.3:a:cisco:secure_email_gateway:*:*:*:*:*:*:*:* |
| Overall Posture | CRITICAL |
| Recommended Safe Release | 16.5.0-780 |
Documented CVEs
2 vulnerabilities cataloged in the Hermes intelligence repository.
CISA KEV Entries
2 flaws with confirmed active in-the-wild exploitation.
Weaponized Exploits
2 vulnerabilities with publicly available PoCs or weaponized exploit tooling.
Remediation Target
Recommended upgrade to 16.5.0-780 to neutralize known flaws.
Progression of Hermes Threat Score (HTS) posture and maximum EPSS probability over the last 30 days:
0 / 100
= Stable over 30d
29.9 %
= Stable over 30d
1
Active in-the-wild exploitation
| CVE | CVSS Score | EPSS Probability | CISA KEV | Affected Versions | Fixed In | Hermes Analysis |
|---|---|---|---|---|---|---|
| CVE-2025-20393 | 10 (CRITICAL) | 29.9% | CISA KEV | < v15.0.3-010 | 15.0.3-010 | Analysis β |
| CVE-2026-76461 | 9.8 (CRITICAL) | 2.0% | CISA KEV | v15.5.0 to v15.5.4-012, v16.0.0 to v16.0.3-044, < v16.5.0-780 | 15.5.5-014, 16.0.4-302, 16.5.0-780 | Analysis β |
Vulnerabilities impacting Cisco Secure Email Gateway are actively leveraged in real-world intrusion campaigns:
Are you operating Cisco Secure Email Gateway in your infrastructure? Inspect your running build to evaluate applicability, confidence score, and security deltas: