# Cisco patches exploited Secure Email Gateway flaw

_Tuesday, September 15, 2026 at 3:31 AM EDT · Security · Latest · Tier 1 — Major_

![Cisco patches exploited Secure Email Gateway flaw — Primary](https://www.bleepstatic.com/content/hl-images/2026/08/11/Cisco.jpg)

Cisco warned customers to patch CVE-2026-76461, a critical Secure Email Gateway vulnerability it says is being actively exploited. Cisco said an unauthenticated remote attacker could send a crafted email containing malicious SQL statements to execute commands with root privileges on the underlying operating system. CISA added the flaw to its Known Exploited Vulnerabilities catalog and ordered federal agencies to patch by September 17. Cisco provided indicators of compromise and advised defenders to review mail, network and firewall logs.

## Sources

- [BleepingComputer](https://www.bleepingcomputer.com/news/security/new-cisco-secure-email-zero-day-exploited-to-execute-commands-as-root/)

---
Canonical: https://techandbusiness.org/newswire/QJL0evNL3H3lhAdVsWhs5q
Retrieved: 2026-09-15T10:51:19.813Z
Publisher: Tech & Business (techandbusiness.org)
