A critical SQL injection vulnerability in Cisco Secure Email Gateway allows unauthenticated remote attackers to execute arbitrary commands with root privileges by sending crafted emails. Cisco has released software updates to address the flaw, with no workarounds available. Administrators should review mail logs for suspicious SQL statements and check network/firewall logs for indicators of compromise.