{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/secure-email--16.5.0/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":5.9,"id":"CVE-2026-20354"},{"cvss":5.9,"id":"CVE-2026-20355"},{"cvss":9.8,"id":"CVE-2026-20274"},{"cvss":9.8,"id":"CVE-2026-20279"},{"cvss":7.5,"id":"CVE-2026-20281"}],"_cs_exploited":true,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Secure Email (\u003c= 16.5.0)","IOS XR","Nexus 9000 Series Switches","Desk Phone 9800","IP Phone 7800","IP Phone 8800","Video Phone 8875"],"_cs_severities":["high"],"_cs_tags":["vulnerability","network-security","patch-management","informational"],"_cs_type":"threat","_cs_vendors":["Cisco"],"content_html":"\u003cp\u003eCisco has released a series of security advisories detailing multiple vulnerabilities across its enterprise product portfolio. Two unpatched, publicly disclosed medium-severity vulnerabilities (CVE-2026-20354 and CVE-2026-20355) affect the S/MIME decryption functionality in Secure Email running AsyncOS version 16.5.0 or earlier. These flaws permit man-in-the-middle (MitM) attacks by failing to properly validate message integrity, potentially exposing encrypted email content.\u003c/p\u003e\n\u003cp\u003eSimultaneously, Cisco has addressed several critical-severity vulnerabilities in networking and communication hardware. This includes remote code execution (RCE) and authentication bypass flaws in IOS XR and Nexus 9000 series switches (CVE-2026-20274, CVE-2026-20279, CVE-2026-20212). The Nexus 9000 vulnerability is particularly severe, allowing unauthenticated remote attackers to execute code with root privileges by connecting to accessible TCP ports. Additionally, a high-severity denial-of-service (DoS) vulnerability (CVE-2026-20281) affects multiple models of Cisco Desk and IP phones using the Session Initiation Protocol (SIP). While no active exploitation is currently observed, the public disclosure of these flaws increases the risk to enterprise networks.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of these vulnerabilities could lead to full system compromise of core networking equipment, unauthorized access to sensitive internal email communications, and significant denial-of-service impacts on telecommunications hardware. These products are foundational in enterprise environments, and compromise could facilitate lateral movement, data exfiltration, and operational disruption.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003ePrioritize the application of vendor-provided patches for all affected Cisco hardware, specifically targeting critical-severity CVE-2026-20274, CVE-2026-20279, and CVE-2026-20212.\u003c/li\u003e\n\u003cli\u003eImplement strict network access controls to limit exposure of management interfaces and TCP ports on Nexus 9000 series switches to trusted internal networks only.\u003c/li\u003e\n\u003cli\u003eMonitor for unusual traffic patterns between email gateways, as the unpatched S/MIME flaws in Secure Email may allow for interception of encrypted traffic.\u003c/li\u003e\n\u003cli\u003eReview the official Cisco security advisories for the specific patch release versions associated with each listed CVE to ensure comprehensive remediation.\u003c/li\u003e\n\u003c/ol\u003e\n","date_modified":"2026-09-03T10:52:08Z","date_published":"2026-09-03T10:52:08Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cisco-security-advisories/","summary":"Cisco has issued security advisories for unpatched S/MIME vulnerabilities in Secure Email and critical RCE and authentication bypass flaws across its IOS XR, Nexus, and VoIP phone product lines.","title":"Cisco Releases Patches for Critical Infrastructure Vulnerabilities","url":"https://feed.craftedsignal.io/briefs/2026-09-cisco-security-advisories/"}],"language":"en","title":"CraftedSignal Threat Feed - Secure Email (\u003c= 16.5.0)","version":"https://jsonfeed.org/version/1.1"}