Warning: Two critical vulnerabilities impact Cisco ISE, leading to unauthenticated remote code execution as root, Patch Immediately!
ID: e86d5cdd-d246-54ba-a024-593b04396429
STIX ID: report--e86d5cdd-d246-54ba-a024-593b04396429
Threat Score
Cisco and the Centre for Cybersecurity Belgium warn of multiple unauthenticated remote code execution vulnerabilities in Cisco ISE and ISE-PIC (versions 3.3 and 3.4) — including CVE-2025-20281, CVE-2025-20282 and CVE-2025-20337 — that allow attackers to obtain root privileges; CVSS scores range from 9.8 to 10.0, active exploitation has been reported, and the only recommended remediation is immediate patching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
