Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
Élevé · The Hacker News ·
Exploité
Ce qui s'est passé
Cisco Secure Email Gateway (AsyncOS) flaw CVE-2026-76461, CVSS 9.8, is actively exploited; unauthenticated remote attackers can run commands as root via email parsing. Patch now.
À faire maintenant
Apply Cisco's AsyncOS update for CVE-2026-76461 immediately; verify fixed version with the Cisco advisory. If patching is delayed, restrict gateway access to trusted IPs, monitor logs, and isolate the appliance.
Références CVE
- CVE-2026-76461
Source originale
Analyse assistée par IA, sources citées. Vérifiez auprès de l'avis du fournisseur avant d'agir.