More

    Cisco has finally patched a maximum-level security issue which was allegedly being targeted by Chinese hackers



    • Cisco patches critical RCE flaw (CVE-2025-20393) in Secure Email appliances
    • Chinese state-sponsored groups exploited it for weeks using Aquashell and tunneling tools
    • Updates remove persistence mechanisms; extent of global compromise remains unknown

    A maximum-severity vulnerability in certain Cisco products has finally been addressed after allegedly being exploited by Chinese hackers for several weeks.

    In mid-December 2025, the networking giant disclosed a remote code execution (RCE) vulnerability in AsyncOS that affects Secure Email Gateway (SEG) and Secure Email and Web Manager (SEWM) appliances. It tracked the flaw as CVE-2025-20393 and gave it a severity score of 10/10 (critical).


    https://cdn.mos.cms.futurecdn.net/GECPn964KJunKWgRJ5mMti-2560-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    Leave a reply

    Please enter your comment!
    Please enter your name here

    spot_imgspot_img