logo

CVE-2025-20286

ID: f042da64-3191-500e-99ae-91c75bcb97bc

STIX ID: report--f042da64-3191-500e-99ae-91c75bcb97bc

Feed Name: Arctic Wolf Blog

Threat Score
70/100

Date Published: 2025-06-05

Date Updated: 2026-04-27

...
...

On June 4, 2025, Cisco released fixes for multiple vulnerabilities including CVE-2025-20286, a cloud-only flaw in Cisco Identity Services Engine (ISE) that can allow unauthenticated remote access, administrative actions, and data exposure due to identically generated credentials across cloud-deployed instances; two additional medium-severity issues (including CVE-2025-20129) with publicly available proof-of-concept exploit code were also disclosed. Arctic Wolf strongly recommends upgrading to the listed fixed releases and following organizational patching/testing processes; no exploitation has been observed to date.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.