Skip to main content

Multiple Products vulnerabilities

1 published alerts for Cisco Multiple Products.

Actively exploited (KEV)

CVE-2025-20393

Cisco Multiple Products Improper Input Validation Vulnerability

Cisco Multiple Products is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2025-20393). Cisco Secure Email Gateway, Secure Email, AsyncOS Software, and Web Manager appliances contains an improper input validation vulnerability that allows threat actors to execute arbitrary commands with root privileges on the underlying operating system of an affected appliance. CISA remediation due date: 2025-12-24. If you need help checking exposure, call (864) 335-9223.