📦 Identity Services Engine

by Cisco

🔍 What is Identity Services Engine?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-20337

CRITICAL CVSS 10.0 Jul 16, 2025

An unauthenticated remote code execution vulnerability in Cisco ISE and ISE-PIC allows attackers to execute arbitrary commands as root without credentials. This affects organizations using vulnerable ...

CVE-2025-20282

CRITICAL CVSS 10.0 Jun 25, 2025

This critical vulnerability in Cisco ISE and ISE-PIC allows unauthenticated remote attackers to upload arbitrary files and execute them as root on the underlying operating system. Attackers can achiev...

CVE-2025-20281

CRITICAL CVSS 10.0 Jun 25, 2025

An unauthenticated remote code execution vulnerability in Cisco ISE and ISE-PIC API allows attackers to execute arbitrary commands as root without credentials. This affects organizations using vulnera...

CVE-2025-20286

CRITICAL CVSS 9.9 Jun 4, 2025

A critical vulnerability in Cisco ISE cloud deployments allows unauthenticated attackers to access shared credentials across multiple cloud environments. This enables data access, administrative opera...

CVE-2025-20124

CRITICAL CVSS 9.9 Feb 5, 2025

This vulnerability allows authenticated attackers with read-only admin credentials to execute arbitrary commands as root on Cisco ISE devices via insecure Java deserialization in an API. It affects Ci...

CVE-2021-44228

CRITICAL CVSS 10.0 Dec 10, 2021

CVE-2021-44228 (Log4Shell) is a critical remote code execution vulnerability in Apache Log4j2 that allows attackers to execute arbitrary code by exploiting JNDI lookups in log messages. This affects a...

CVE-2025-20343

HIGH CVSS 8.6 Nov 5, 2025

An unauthenticated remote attacker can cause Cisco Identity Services Engine (ISE) to restart unexpectedly by sending crafted RADIUS access request messages for already-rejected MAC addresses. This cre...

CVE-2025-20152

HIGH CVSS 8.6 May 21, 2025

An unauthenticated remote attacker can send specially crafted RADIUS authentication requests to cause Cisco Identity Services Engine (ISE) to reload, resulting in denial of service. This affects organ...

CVE-2023-20175

HIGH CVSS 8.8 Nov 1, 2023

This vulnerability in Cisco ISE allows authenticated users with at least Read-only privileges to execute arbitrary commands on the underlying operating system, potentially gaining root access. It affe...

CVE-2023-20243

HIGH CVSS 8.6 Sep 6, 2023

An unauthenticated remote attacker can cause Cisco ISE to stop processing RADIUS packets by sending crafted RADIUS accounting requests, resulting in denial of service for network authentication. This ...

CVE-2022-20756

HIGH CVSS 8.6 Apr 6, 2022

This vulnerability in Cisco ISE's RADIUS feature allows an unauthenticated remote attacker to send crafted RADIUS requests, causing the system to stop processing RADIUS packets and leading to denial o...

CVE-2021-1594

HIGH CVSS 7.5 Oct 6, 2021

This vulnerability allows an unauthenticated remote attacker to execute arbitrary commands with root privileges on Cisco Identity Services Engine (ISE) by exploiting insufficient input validation in t...

CVE-2026-20047

MEDIUM CVSS 4.8 Jan 15, 2026

An authenticated cross-site scripting (XSS) vulnerability in Cisco ISE and ISE-PIC web management interfaces allows attackers with administrative credentials to inject malicious scripts. This could le...

CVE-2026-20076

MEDIUM CVSS 4.8 Jan 15, 2026

This stored XSS vulnerability in Cisco ISE's web management interface allows authenticated administrators to inject malicious scripts that execute when other administrators view affected pages. Attack...

CVE-2025-20305

MEDIUM CVSS 4.3 Nov 5, 2025

This vulnerability in Cisco ISE allows authenticated read-only administrators to view sensitive passwords that should only be accessible to high-privileged users. Attackers with valid read-only admin ...

CVE-2025-20303

MEDIUM CVSS 5.4 Nov 5, 2025

This CVE describes reflected cross-site scripting (XSS) vulnerabilities in Cisco ISE and ISE-PIC web management interfaces. An authenticated attacker with low privileges can inject malicious scripts t...

CVE-2025-20304

MEDIUM CVSS 5.4 Nov 5, 2025

This vulnerability allows authenticated attackers with low privileges to conduct reflected cross-site scripting (XSS) attacks against Cisco ISE and ISE-PIC web management interfaces. Successful exploi...

CVE-2025-20289

MEDIUM CVSS 4.8 Nov 5, 2025

This vulnerability allows authenticated attackers with low-privileged accounts to conduct reflected cross-site scripting (XSS) attacks against Cisco ISE and ISE-PIC web management interfaces. Successf...

CVE-2025-20285

MEDIUM CVSS 4.1 Jul 16, 2025

This vulnerability allows authenticated remote attackers with administrative credentials to bypass IP access restrictions on Cisco ISE and ISE-PIC devices, enabling login from unauthorized IP addresse...

CVE-2025-20283

MEDIUM CVSS 6.5 Jul 16, 2025

This vulnerability in Cisco ISE and ISE-PIC allows authenticated attackers with high-privileged credentials to execute arbitrary code as root on the underlying operating system. It affects organizatio...

CVE-2025-20204

MEDIUM CVSS 4.8 Feb 5, 2025

An authenticated cross-site scripting (XSS) vulnerability in Cisco ISE's web management interface allows attackers with administrative credentials to inject malicious scripts. This could lead to sessi...

CVE-2020-3525

MEDIUM CVSS 4.3 Nov 18, 2024

This vulnerability in Cisco Identity Services Engine (ISE) allows authenticated remote attackers to recover service account passwords saved on affected systems. Attackers with read or write access to ...

CVE-2024-20538

MEDIUM CVSS 6.1 Nov 6, 2024

This vulnerability allows unauthenticated remote attackers to conduct cross-site scripting (XSS) attacks against Cisco ISE web management interface users. Attackers can exploit it by tricking users in...

CVE-2024-20531

MEDIUM CVSS 5.5 Nov 6, 2024

This vulnerability in Cisco ISE allows authenticated attackers with Super Admin credentials to read arbitrary files on the underlying OS and conduct SSRF attacks via crafted XML requests. It affects C...

CVE-2024-20529

MEDIUM CVSS 5.5 Nov 6, 2024

This vulnerability in Cisco ISE allows authenticated attackers with Super Admin credentials to read or delete arbitrary files on the system. It affects Cisco ISE deployments where insufficient API par...

CVE-2024-20525

MEDIUM CVSS 6.1 Nov 6, 2024

This cross-site scripting (XSS) vulnerability in Cisco ISE's web management interface allows unauthenticated remote attackers to execute malicious scripts in users' browsers. Attackers can steal sessi...

CVE-2024-20515

MEDIUM CVSS 6.5 Oct 2, 2024

An authenticated attacker with Read-Only Administrator privileges in Cisco Identity Services Engine (ISE) can exploit improper data protection mechanisms to view sensitive device credentials that shou...

CVE-2024-20469

MEDIUM CVSS 6.0 Sep 4, 2024

This vulnerability allows authenticated administrators on Cisco Identity Services Engine (ISE) to execute arbitrary commands on the underlying operating system and gain root privileges. It affects ISE...

CVE-2024-20417

MEDIUM CVSS 6.5 Aug 21, 2024

Multiple SQL injection vulnerabilities in Cisco ISE's REST API allow authenticated attackers to execute arbitrary SQL queries. This could lead to unauthorized data access or modification on affected C...

CVE-2024-20486

MEDIUM CVSS 6.5 Aug 21, 2024

This CSRF vulnerability in Cisco ISE's web management interface allows unauthenticated remote attackers to trick authenticated users into executing malicious actions. Attackers can perform arbitrary o...

CVE-2024-20443

MEDIUM CVSS 5.4 Aug 7, 2024

This vulnerability allows an authenticated attacker with low privileges to conduct cross-site scripting (XSS) attacks against users of Cisco ISE's web management interface. It affects Cisco Identity S...