Skip to finding
important · Email — Edge

An on-path attacker can recover plaintext from Cisco-to-Cisco S/MIME traffic.

Affects

Cisco Secure Email gateways running AsyncOS and configured to use S/MIME for gateway-to-gateway email protection

Insufficient ciphertext-integrity validation lets an attacker modify intercepted gateway traffic into a plaintext-recovery path.

Detail and 1 source
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Thursday, September 3, 2026