logo

Cisco Warns Customers of Actively Exploited Zero-Day in Email Gateways

ID: 4ad115b5-884a-5d33-aa1c-e281dd2bdf29

STIX ID: report--4ad115b5-884a-5d33-aa1c-e281dd2bdf29

Feed Name: CosmicBytez Labs

Threat Score
95/100

Date Published: 2026-09-16

Date Updated: 2026-09-16

...
...

A critical zero-day SQL injection (CVE-2026-76461) in Cisco Secure Email Gateway's AsyncOS was exploited in the wild via unauthenticated crafted emails, enabling arbitrary SQL execution that leads to root-level command execution; Cisco and CISA marked it high severity (CVSS 9.8) and added it to the KEV catalog, and vendors recommend immediate patching to fixed AsyncOS releases, forensic preservation, credential/certificate rotation, and active hunting for prior compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.