Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
ID: 5ac68229-8521-50bf-b7ec-ed64b0201a13
STIX ID: report--5ac68229-8521-50bf-b7ec-ed64b0201a13
Feed Name: CosmicBytez Labs
Threat Score
Cisco disclosed CVE-2026-76460, a critical (CVSS 10.0) unauthenticated zero-day in Identity Services Engine (ISE) and ISE Passive Identity Connector that allows full authentication bypass and potential root command execution; Cisco confirmed active exploitation, published patches for supported ISE branches, advised re-imaging if compromise is suspected, and CISA added the flaw to its KEV catalog with an urgent patching deadline.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
