CVE-2026-76440 (GCVE-0-2026-76440)
Vulnerability from cvelistv5
Published
2026-09-14 16:08
Modified
2026-09-15 17:03
Severity ?
CWE
  • CWE-23 - Relative Path Traversal
Summary
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76440 are related to path traversal issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-23.
Impacted products
Vendor Product Version
Cisco Cisco Secure Email Version: 14.0.0-698
Version: 13.5.1-277
Version: 13.0.0-392
Version: 14.2.0-620
Version: 13.0.5-007
Version: 13.5.4-038
Version: 14.2.1-020
Version: 14.3.0-032
Version: 15.0.0-104
Version: 15.0.1-030
Version: 15.5.0-048
Version: 15.5.1-055
Version: 15.5.2-018
Version: 16.0.0-050
Version: 15.0.3-002
Version: 16.0.0-054
Version: 15.5.3-022
Version: 16.0.1-017
Version: 15.5.4-012
Version: 16.0.4-016
Version: 15.0.5-016
Version: 16.0.2-112
Version: 16.0.3-044
Version: 15.5.5-014
Create a notification for this product.
   Cisco Cisco Secure Email and Web Manager Version: 13.6.2-023
Version: 13.6.2-078
Version: 13.0.0-249
Version: 13.0.0-277
Version: 13.8.1-052
Version: 13.8.1-068
Version: 13.8.1-074
Version: 14.0.0-404
Version: 12.8.1-002
Version: 14.1.0-227
Version: 13.6.1-201
Version: 14.2.0-203
Version: 14.2.0-212
Version: 12.8.1-021
Version: 13.8.1-108
Version: 14.2.0-224
Version: 14.3.0-120
Version: 15.0.0-334
Version: 15.5.1-024
Version: 15.5.1-029
Version: 15.5.2-005
Version: 16.0.0-195
Version: 15.5.3-017
Version: 16.0.1-010
Version: 15.0.1-035
Version: 16.0.2-088
Version: 15.5.4-007
Version: 15.0.2-007
Version: 16.0.4-010
Version: 16.0.3-016
Version: 16.5.0-429
Version: 15.5.5-006
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "metrics": [
          {
            "other": {
              "content": {
                "id": "CVE-2026-76440",
                "options": [
                  {
                    "Exploitation": "none"
                  },
                  {
                    "Automatable": "yes"
                  },
                  {
                    "Technical Impact": "total"
                  }
                ],
                "role": "CISA Coordinator",
                "timestamp": "2026-09-14T00:00:00+00:00",
                "version": "2.0.3"
              },
              "type": "ssvc"
            }
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2026-09-15T03:56:08.458Z",
          "orgId": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "shortName": "CISA-ADP"
        },
        "title": "CISA ADP Vulnrichment"
      },
      {
        "descriptions": [
          {
            "lang": "en",
            "value": "The CVE Program recognizes that this CVE Record provides vulnerability information that a Supplier CNA believes is very important to consumers. The CVE Program has flagged this CVE Record as it assigns a single CVE ID to a collection of individual vulnerabilities which does not align with CVE\u0027s \"one vulnerability, one ID\" principle, and therefore provides incomplete information. For further clarification, please see the CVE Program\u0027s blog, \"Preserving Vulnerability-Level Identification\" linked below. Details within the CNA container below are viewable by clicking on the CNA name."
          }
        ],
        "providerMetadata": {
          "dateUpdated": "2026-09-15T17:03:57.728Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "url": "https://www.cve.org/Media/News/item/blog/2026/06/16/Preserving-Vulnerability-Level-Identification"
          }
        ],
        "tags": [
          "x_bundling-flagged-by-CVE-Program"
        ]
      }
    ],
    "cna": {
      "affected": [
        {
          "defaultStatus": "unknown",
          "product": "Cisco Secure Email",
          "vendor": "Cisco",
          "versions": [
            {
              "status": "affected",
              "version": "14.0.0-698"
            },
            {
              "status": "affected",
              "version": "13.5.1-277"
            },
            {
              "status": "affected",
              "version": "13.0.0-392"
            },
            {
              "status": "affected",
              "version": "14.2.0-620"
            },
            {
              "status": "affected",
              "version": "13.0.5-007"
            },
            {
              "status": "affected",
              "version": "13.5.4-038"
            },
            {
              "status": "affected",
              "version": "14.2.1-020"
            },
            {
              "status": "affected",
              "version": "14.3.0-032"
            },
            {
              "status": "affected",
              "version": "15.0.0-104"
            },
            {
              "status": "affected",
              "version": "15.0.1-030"
            },
            {
              "status": "affected",
              "version": "15.5.0-048"
            },
            {
              "status": "affected",
              "version": "15.5.1-055"
            },
            {
              "status": "affected",
              "version": "15.5.2-018"
            },
            {
              "status": "affected",
              "version": "16.0.0-050"
            },
            {
              "status": "affected",
              "version": "15.0.3-002"
            },
            {
              "status": "affected",
              "version": "16.0.0-054"
            },
            {
              "status": "affected",
              "version": "15.5.3-022"
            },
            {
              "status": "affected",
              "version": "16.0.1-017"
            },
            {
              "status": "affected",
              "version": "15.5.4-012"
            },
            {
              "status": "affected",
              "version": "16.0.4-016"
            },
            {
              "status": "affected",
              "version": "15.0.5-016"
            },
            {
              "status": "affected",
              "version": "16.0.2-112"
            },
            {
              "status": "affected",
              "version": "16.0.3-044"
            },
            {
              "status": "affected",
              "version": "15.5.5-014"
            }
          ]
        },
        {
          "defaultStatus": "unknown",
          "product": "Cisco Secure Email and Web Manager",
          "vendor": "Cisco",
          "versions": [
            {
              "status": "affected",
              "version": "13.6.2-023"
            },
            {
              "status": "affected",
              "version": "13.6.2-078"
            },
            {
              "status": "affected",
              "version": "13.0.0-249"
            },
            {
              "status": "affected",
              "version": "13.0.0-277"
            },
            {
              "status": "affected",
              "version": "13.8.1-052"
            },
            {
              "status": "affected",
              "version": "13.8.1-068"
            },
            {
              "status": "affected",
              "version": "13.8.1-074"
            },
            {
              "status": "affected",
              "version": "14.0.0-404"
            },
            {
              "status": "affected",
              "version": "12.8.1-002"
            },
            {
              "status": "affected",
              "version": "14.1.0-227"
            },
            {
              "status": "affected",
              "version": "13.6.1-201"
            },
            {
              "status": "affected",
              "version": "14.2.0-203"
            },
            {
              "status": "affected",
              "version": "14.2.0-212"
            },
            {
              "status": "affected",
              "version": "12.8.1-021"
            },
            {
              "status": "affected",
              "version": "13.8.1-108"
            },
            {
              "status": "affected",
              "version": "14.2.0-224"
            },
            {
              "status": "affected",
              "version": "14.3.0-120"
            },
            {
              "status": "affected",
              "version": "15.0.0-334"
            },
            {
              "status": "affected",
              "version": "15.5.1-024"
            },
            {
              "status": "affected",
              "version": "15.5.1-029"
            },
            {
              "status": "affected",
              "version": "15.5.2-005"
            },
            {
              "status": "affected",
              "version": "16.0.0-195"
            },
            {
              "status": "affected",
              "version": "15.5.3-017"
            },
            {
              "status": "affected",
              "version": "16.0.1-010"
            },
            {
              "status": "affected",
              "version": "15.0.1-035"
            },
            {
              "status": "affected",
              "version": "16.0.2-088"
            },
            {
              "status": "affected",
              "version": "15.5.4-007"
            },
            {
              "status": "affected",
              "version": "15.0.2-007"
            },
            {
              "status": "affected",
              "version": "16.0.4-010"
            },
            {
              "status": "affected",
              "version": "16.0.3-016"
            },
            {
              "status": "affected",
              "version": "16.5.0-429"
            },
            {
              "status": "affected",
              "version": "15.5.5-006"
            }
          ]
        }
      ],
      "descriptions": [
        {
          "lang": "en",
          "value": "As part of Cisco\u0027s ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities.\r\n\r\nThe vulnerabilities tracked by CVE-2026-76440 are related to path traversal issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-23."
        }
      ],
      "exploits": [
        {
          "lang": "en",
          "value": "Except as otherwise noted previously, the Cisco PSIRT is not aware of any public announcements or malicious use of the vulnerabilities that are described in this advisory."
        }
      ],
      "metrics": [
        {
          "cvssV3_1": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 9.8,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "format": "cvssV3_1"
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "cweId": "CWE-23",
              "description": "Relative Path Traversal",
              "lang": "en",
              "type": "cwe"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2026-09-14T16:08:50.075Z",
        "orgId": "d1c1063e-7a18-46af-9102-31f8928bc633",
        "shortName": "cisco"
      },
      "references": [
        {
          "name": "cisco-sa-hardening-esa-dfCrfXkm",
          "url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm"
        }
      ],
      "source": {
        "advisory": "cisco-sa-hardening-esa-dfCrfXkm",
        "defects": [
          "CSCwu56221"
        ],
        "discovery": "INTERNAL"
      },
      "title": "Cisco Secure Email Gateway Security Hardening Release"
    }
  },
  "cveMetadata": {
    "assignerOrgId": "d1c1063e-7a18-46af-9102-31f8928bc633",
    "assignerShortName": "cisco",
    "cveId": "CVE-2026-76440",
    "datePublished": "2026-09-14T16:08:50.075Z",
    "dateReserved": "2026-08-19T12:02:03.635Z",
    "dateUpdated": "2026-09-15T17:03:57.728Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.2",
  "vulnerability-lookup:meta": {
    "vulnrichment": {
      "containers": "{\"adp\": [{\"tags\": [\"x_bundling-flagged-by-CVE-Program\"], \"references\": [{\"url\": \"https://www.cve.org/Media/News/item/blog/2026/06/16/Preserving-Vulnerability-Level-Identification\"}], \"descriptions\": [{\"lang\": \"en\", \"value\": \"The CVE Program recognizes that this CVE Record provides vulnerability information that a Supplier CNA believes is very important to consumers. The CVE Program has flagged this CVE Record as it assigns a single CVE ID to a collection of individual vulnerabilities which does not align with CVE\u0027s \\\"one vulnerability, one ID\\\" principle, and therefore provides incomplete information. For further clarification, please see the CVE Program\u0027s blog, \\\"Preserving Vulnerability-Level Identification\\\" linked below. Details within the CNA container below are viewable by clicking on the CNA name.\"}], \"providerMetadata\": {\"orgId\": \"af854a3a-2127-422b-91ae-364da2661108\", \"shortName\": \"CVE\", \"dateUpdated\": \"2026-09-15T17:03:57.728Z\"}}, {\"title\": \"CISA ADP Vulnrichment\", \"metrics\": [{\"other\": {\"type\": \"ssvc\", \"content\": {\"id\": \"CVE-2026-76440\", \"role\": \"CISA Coordinator\", \"options\": [{\"Exploitation\": \"none\"}, {\"Automatable\": \"yes\"}, {\"Technical Impact\": \"total\"}], \"version\": \"2.0.3\", \"timestamp\": \"2026-09-14T19:11:43.414223Z\"}}}], \"providerMetadata\": {\"orgId\": \"134c704f-9b21-4f2e-91b3-4a467353bcc0\", \"shortName\": \"CISA-ADP\", \"dateUpdated\": \"2026-09-14T19:15:08.793Z\"}}], \"cna\": {\"title\": \"Cisco Secure Email Gateway Security Hardening Release\", \"source\": {\"defects\": [\"CSCwu56221\"], \"advisory\": \"cisco-sa-hardening-esa-dfCrfXkm\", \"discovery\": \"INTERNAL\"}, \"metrics\": [{\"format\": \"cvssV3_1\", \"cvssV3_1\": {\"scope\": \"UNCHANGED\", \"version\": \"3.1\", \"baseScore\": 9.8, \"attackVector\": \"NETWORK\", \"baseSeverity\": \"CRITICAL\", \"vectorString\": \"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H\", \"integrityImpact\": \"HIGH\", \"userInteraction\": \"NONE\", \"attackComplexity\": \"LOW\", \"availabilityImpact\": \"HIGH\", \"privilegesRequired\": \"NONE\", \"confidentialityImpact\": \"HIGH\"}}], \"affected\": [{\"vendor\": \"Cisco\", \"product\": \"Cisco Secure Email\", \"versions\": [{\"status\": \"affected\", \"version\": \"14.0.0-698\"}, {\"status\": \"affected\", \"version\": \"13.5.1-277\"}, {\"status\": \"affected\", \"version\": \"13.0.0-392\"}, {\"status\": \"affected\", \"version\": \"14.2.0-620\"}, {\"status\": \"affected\", \"version\": \"13.0.5-007\"}, {\"status\": \"affected\", \"version\": \"13.5.4-038\"}, {\"status\": \"affected\", \"version\": \"14.2.1-020\"}, {\"status\": \"affected\", \"version\": \"14.3.0-032\"}, {\"status\": \"affected\", \"version\": \"15.0.0-104\"}, {\"status\": \"affected\", \"version\": \"15.0.1-030\"}, {\"status\": \"affected\", \"version\": \"15.5.0-048\"}, {\"status\": \"affected\", \"version\": \"15.5.1-055\"}, {\"status\": \"affected\", \"version\": \"15.5.2-018\"}, {\"status\": \"affected\", \"version\": \"16.0.0-050\"}, {\"status\": \"affected\", \"version\": \"15.0.3-002\"}, {\"status\": \"affected\", \"version\": \"16.0.0-054\"}, {\"status\": \"affected\", \"version\": \"15.5.3-022\"}, {\"status\": \"affected\", \"version\": \"16.0.1-017\"}, {\"status\": \"affected\", \"version\": \"15.5.4-012\"}, {\"status\": \"affected\", \"version\": \"16.0.4-016\"}, {\"status\": \"affected\", \"version\": \"15.0.5-016\"}, {\"status\": \"affected\", \"version\": \"16.0.2-112\"}, {\"status\": \"affected\", \"version\": \"16.0.3-044\"}, {\"status\": \"affected\", \"version\": \"15.5.5-014\"}], \"defaultStatus\": \"unknown\"}, {\"vendor\": \"Cisco\", \"product\": \"Cisco Secure Email and Web Manager\", \"versions\": [{\"status\": \"affected\", \"version\": \"13.6.2-023\"}, {\"status\": \"affected\", \"version\": \"13.6.2-078\"}, {\"status\": \"affected\", \"version\": \"13.0.0-249\"}, {\"status\": \"affected\", \"version\": \"13.0.0-277\"}, {\"status\": \"affected\", \"version\": \"13.8.1-052\"}, {\"status\": \"affected\", \"version\": \"13.8.1-068\"}, {\"status\": \"affected\", \"version\": \"13.8.1-074\"}, {\"status\": \"affected\", \"version\": \"14.0.0-404\"}, {\"status\": \"affected\", \"version\": \"12.8.1-002\"}, {\"status\": \"affected\", \"version\": \"14.1.0-227\"}, {\"status\": \"affected\", \"version\": \"13.6.1-201\"}, {\"status\": \"affected\", \"version\": \"14.2.0-203\"}, {\"status\": \"affected\", \"version\": \"14.2.0-212\"}, {\"status\": \"affected\", \"version\": \"12.8.1-021\"}, {\"status\": \"affected\", \"version\": \"13.8.1-108\"}, {\"status\": \"affected\", \"version\": \"14.2.0-224\"}, {\"status\": \"affected\", \"version\": \"14.3.0-120\"}, {\"status\": \"affected\", \"version\": \"15.0.0-334\"}, {\"status\": \"affected\", \"version\": \"15.5.1-024\"}, {\"status\": \"affected\", \"version\": \"15.5.1-029\"}, {\"status\": \"affected\", \"version\": \"15.5.2-005\"}, {\"status\": \"affected\", \"version\": \"16.0.0-195\"}, {\"status\": \"affected\", \"version\": \"15.5.3-017\"}, {\"status\": \"affected\", \"version\": \"16.0.1-010\"}, {\"status\": \"affected\", \"version\": \"15.0.1-035\"}, {\"status\": \"affected\", \"version\": \"16.0.2-088\"}, {\"status\": \"affected\", \"version\": \"15.5.4-007\"}, {\"status\": \"affected\", \"version\": \"15.0.2-007\"}, {\"status\": \"affected\", \"version\": \"16.0.4-010\"}, {\"status\": \"affected\", \"version\": \"16.0.3-016\"}, {\"status\": \"affected\", \"version\": \"16.5.0-429\"}, {\"status\": \"affected\", \"version\": \"15.5.5-006\"}], \"defaultStatus\": \"unknown\"}], \"exploits\": [{\"lang\": \"en\", \"value\": \"Except as otherwise noted previously, the Cisco PSIRT is not aware of any public announcements or malicious use of the vulnerabilities that are described in this advisory.\"}], \"references\": [{\"url\": \"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm\", \"name\": \"cisco-sa-hardening-esa-dfCrfXkm\"}], \"descriptions\": [{\"lang\": \"en\", \"value\": \"As part of Cisco\u0027s ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities.\\r\\n\\r\\nThe vulnerabilities tracked by CVE-2026-76440 are related to path traversal issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-23.\"}], \"problemTypes\": [{\"descriptions\": [{\"lang\": \"en\", \"type\": \"cwe\", \"cweId\": \"CWE-23\", \"description\": \"Relative Path Traversal\"}]}], \"providerMetadata\": {\"orgId\": \"d1c1063e-7a18-46af-9102-31f8928bc633\", \"shortName\": \"cisco\", \"dateUpdated\": \"2026-09-14T16:08:50.075Z\"}}}",
      "cveMetadata": "{\"cveId\": \"CVE-2026-76440\", \"state\": \"PUBLISHED\", \"dateUpdated\": \"2026-09-15T17:03:57.728Z\", \"dateReserved\": \"2026-08-19T12:02:03.635Z\", \"assignerOrgId\": \"d1c1063e-7a18-46af-9102-31f8928bc633\", \"datePublished\": \"2026-09-14T16:08:50.075Z\", \"assignerShortName\": \"cisco\"}",
      "dataType": "CVE_RECORD",
      "dataVersion": "5.2"
    }
  }
}


Log in or create an account to share your comment.




Tags
Taxonomy of the tags.


Loading…

Loading…

Loading…

Sightings

Author Source Type Date

Nomenclature

  • Seen: The vulnerability was mentioned, discussed, or seen somewhere by the user.
  • Confirmed: The vulnerability is confirmed from an analyst perspective.
  • Published Proof of Concept: A public proof of concept is available for this vulnerability.
  • Exploited: This vulnerability was exploited and seen by the user reporting the sighting.
  • Patched: This vulnerability was successfully patched by the user reporting the sighting.
  • Not exploited: This vulnerability was not exploited or seen by the user reporting the sighting.
  • Not confirmed: The user expresses doubt about the veracity of the vulnerability.
  • Not patched: This vulnerability was not successfully patched by the user reporting the sighting.


Loading…

Loading…