Descripción
Reports About Cyberattacks Against Cisco Secure Email Gateway And and Web Manager
On December 10, became aware of a new cyberattack campaign targeting limited subset appliances with certain ports open to the internet that are running AsyncOS Software for Manager. This attack allows threat actors execute arbitrary commands with root privileges on underlying operating system an affected appliance. The ongoing investigation has revealed evidence persistence mechanism planted by maintain degree control over compromised appliances.
Cisco strongly recommends customers follow guidance provided in Recommendations section security advisory order assess exposure mitigate risks. For more information, see this advisory.
This is available at following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sma-attack-N9bf4
<br/>Security Impact Rating: Critical
<br/>CVE: CVE-2025-20393
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sma-attack-N9bf4 CISCO
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sma-attack-N9bf4