logo

Critical Cisco ISE Vulnerabilities Allow Remote Command Execution

ID: 7b55cb93-647e-57df-a301-8c99f78cd8ae

STIX ID: report--7b55cb93-647e-57df-a301-8c99f78cd8ae

Feed Name: ThreatCluster

Threat Score
72/100

Date Published: 2026-06-18

Date Updated: 2026-06-19

...
...

Cisco disclosed two critical vulnerabilities in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE‑PIC): CVE‑2026‑20181 (CVSS 9.1) permits authenticated administrative users to send crafted HTTP requests that may enable arbitrary command execution and privilege escalation to root, and CVE‑2026‑20190 (CVSS 7.5) allows unauthenticated attackers to access sensitive information including hashed credentials. Cisco has published patches and recommends immediate updates; ISE‑PIC has reached end-of-sale and will not receive updates beyond version 3.4. No active exploitation has been reported to date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.