Deploy autonomous AI agents that reason, exploit, and validate complex vulnerability chains — not another scanner, an agentic system that thinks like a senior pentester.
CVE-2025-20393 is a critical severity vulnerability with a CVSS score of 10.0. Exploits are available; patches have been released and should be applied urgently. This is classified as a zero-day vulnerability.
Please cite this page when referencing data from Strobes VI. Proper attribution helps support our vulnerability intelligence research.
Lower probability of exploitation
EPSS predicts the probability of exploitation in the next 30 days based on real-world threat data, complementing CVSS severity scores with actual risk assessment.
Cisco Secure Email Gateway, Secure Email, AsyncOS Software, and Web Manager appliances contains an improper input validation vulnerability that allows threat actors to execute arbitrary commands with root privileges on the underlying operating system of an affected appliance.
| Vendor | Product |
|---|---|
| Cisco | Secure Email And Web Manager M690x |
| Cisco | Secure Email Gateway Virtual Appliance C300v |
| Cisco | Secure Email Gateway Virtual Appliance C100v |
| Cisco | Secure Email And Web Manager Virtual Appliance M300v |
| Cisco | Secure Email Gateway C195 |
| Cisco | Secure Email Gateway C695 |
| Cisco | Secure Email And Web Manager M190 |
| Cisco | Secure Email And Web Manager M695 |
| Cisco | Secure Email And Web Manager Virtual Appliance M100v |
| Cisco | Secure Email Gateway Virtual Appliance C600v |
And 11 more...