logo

Critical Cisco ISE Flaws Let Remote Attackers Execute Malicious Code

ID: 362e057e-325b-5f1e-86d2-bff4b16352a9

STIX ID: report--362e057e-325b-5f1e-86d2-bff4b16352a9

Feed Name: GBHackers

Threat Score
75/100

Date Published: 2026-04-16

Date Updated: 2026-04-22

Author: Divya

...
...

Cisco published an urgent advisory for two vulnerabilities in Identity Services Engine (ISE) and ISE Passive Identity Connector: CVE-2026-20147 (critical RCE, CVSS 9.9) that can lead to full remote code execution and potential DoS in single-node deployments, and CVE-2026-20148 (path traversal, CVSS 4.9) that allows authenticated attackers to read arbitrary files. Both flaws require valid administrative credentials, have no known mitigations, and Cisco has released specific patch versions for affected ISE releases; no public proof-of-concept or observed exploitation was reported at the time of the advisory.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.