CVE-2026-76440: Cisco Secure Email Gateway Security Hardening Release
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76440 are related to path traversal issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-23.
Event History
Frequently Asked Questions
What level of attacker access is required to exploit this issue?
The CVSS vector indicates network-reachable exploitation with low attack complexity, no privileges required, and no user interaction required.
What could successful exploitation affect?
The assigned CVSS vector rates confidentiality, integrity, and availability impacts as high. The vulnerability class is path traversal (CWE-23).