Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460)
ID: 90b3f0a2-5b8d-575b-ad87-8054ea980f65
STIX ID: report--90b3f0a2-5b8d-575b-ad87-8054ea980f65
Feed Name: Help Net Security
Threat Score
Cisco confirmed CVE-2026-76460, an authentication bypass in an API of Cisco Identity Services Engine (ISE) affecting releases 3.0–3.5, is being targeted in the wild; there are no workarounds so vendors should upgrade to the patched releases, review access logs for suspicious usernames, cross-check external network/firewall logs for signs of exfiltration or tampering, and re-image suspected nodes.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
