logo

Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks

ID: 5ac68229-8521-50bf-b7ec-ed64b0201a13

STIX ID: report--5ac68229-8521-50bf-b7ec-ed64b0201a13

Feed Name: CosmicBytez Labs

Threat Score
95/100

Date Published: 2026-09-17

Date Updated: 2026-09-18

...
...

Cisco disclosed CVE-2026-76460, a critical (CVSS 10.0) unauthenticated zero-day in Identity Services Engine (ISE) and ISE Passive Identity Connector that allows full authentication bypass and potential root command execution; Cisco confirmed active exploitation, published patches for supported ISE branches, advised re-imaging if compromise is suspected, and CISA added the flaw to its KEV catalog with an urgent patching deadline.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.