← All CVEs

CVE-2025-20393

critical · 10Actively exploited

On the CISA Known Exploited Vulnerabilities catalog

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Added 2025-12-17Remediation due 2025-12-24

A vulnerability in the Spam Quarantine feature of Cisco AsyncOS Software for Cisco Secure Email Gateway and Cisco Secure Email and Web Manager could allow an unauthenticated, remote attacker to execute arbitrary system commands on an affected device with root privileges. This vulnerability is due to insufficient validation of HTTP requests by the Spam Quarantine feature. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system with root privileges.

10
CVSS
29.9%
EPSS (exploit prob.)
98th
EPSS percentile
2025-12-17
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-20

Affected products

VendorProductAffected versions
ciscoasyncos< 15.0.5-016
ciscoasyncos>= 15.5, < 15.5.4-012
ciscoasyncos>= 16.0, < 16.0.4-016
ciscosecure_email_gateway_virtual_appliance_c100vall versions
ciscosecure_email_gateway_virtual_appliance_c300vall versions
ciscosecure_email_gateway_virtual_appliance_c600vall versions
ciscosecure_email_gateway_c195all versions
ciscosecure_email_gateway_c395all versions
ciscosecure_email_gateway_c695all versions
ciscoasyncos< 15.0.2-007
ciscoasyncos>= 15.5, < 15.5.4-007
ciscoasyncos>= 16.0, < 16.0.4-010
ciscosecure_email_and_web_manager_virtual_appliance_m100vall versions
ciscosecure_email_and_web_manager_virtual_appliance_m300vall versions
ciscosecure_email_and_web_manager_virtual_appliance_m600vall versions
ciscosecure_email_and_web_manager_m170all versions
ciscosecure_email_and_web_manager_m190all versions
ciscosecure_email_and_web_manager_m195all versions
ciscosecure_email_and_web_manager_m380all versions
ciscosecure_email_and_web_manager_m390all versions
ciscosecure_email_and_web_manager_m390xall versions
ciscosecure_email_and_web_manager_m395all versions
ciscosecure_email_and_web_manager_m680all versions
ciscosecure_email_and_web_manager_m690all versions
ciscosecure_email_and_web_manager_m690xall versions
ciscosecure_email_and_web_manager_m695all versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2025-20393