Skip to content

Cisco Secure Email Gateway β€” Security Intelligence & Vulnerability Profile


ParameterTechnical Specification
Official NameCisco Secure Email Gateway
Vendor / Projectcisco
Canonical IDcisco:secure_email
Versioning Schemegeneric
CPE Identifierscpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:*
cpe:2.3:a:cisco:secure_email_gateway:*:*:*:*:*:*:*:*
Overall PostureCRITICAL
Recommended Safe Release16.5.0-780

Documented CVEs

2 vulnerabilities cataloged in the Hermes intelligence repository.

CISA KEV Entries

2 flaws with confirmed active in-the-wild exploitation.

Weaponized Exploits

2 vulnerabilities with publicly available PoCs or weaponized exploit tooling.

Remediation Target

Recommended upgrade to 16.5.0-780 to neutralize known flaws.


Progression of Hermes Threat Score (HTS) posture and maximum EPSS probability over the last 30 days:

Current HTS Score

0 / 100

= Stable over 30d

Max EPSS (Exploitation)

29.9 %

= Stable over 30d

CISA KEV Activity

1

Active in-the-wild exploitation

HTS Trend Curve (D-30 β†’ Today)2026-08-12 β†’ 2026-09-10

3. Vulnerability History & Version Applicability Matrix

Section titled β€œ3. Vulnerability History & Version Applicability Matrix”
CVECVSS ScoreEPSS ProbabilityCISA KEVAffected VersionsFixed InHermes Analysis
CVE-2025-2039310 (CRITICAL)29.9%CISA KEV< v15.0.3-01015.0.3-010Analysis β†’
CVE-2026-764619.8 (CRITICAL)2.0%CISA KEVv15.5.0 to v15.5.4-012, v16.0.0 to v16.0.3-044, < v16.5.0-78015.5.5-014, 16.0.4-302, 16.5.0-780Analysis β†’

Vulnerabilities impacting Cisco Secure Email Gateway are actively leveraged in real-world intrusion campaigns:


Are you operating Cisco Secure Email Gateway in your infrastructure? Inspect your running build to evaluate applicability, confidence score, and security deltas: