DEV Community

Cover image for Cisco Patches 21 Flaws in ISE Identity Infrastructure Including Actively Exploited Zero-Days
BeyondMachines for BeyondMachines

Posted on Originally published at beyondmachines.net

Cisco Patches 21 Flaws in ISE Identity Infrastructure Including Actively Exploited Zero-Days

Summary

Cisco released a set of security updates for Identity Services Engine (ISE) addressing 21 vulnerabilities, including two critical authentication bypasses (CVE-2026-20192 and CVE-2026-76460) currently exploited by attackers to gain root access.

Take Action:

Treat this as a top-priority emergency attackers are already using some of these flaws to take over identity servers. If you run Cisco ISE or ISE-PIC, first make sure the management interface is never reachable from the internet. Then patch ASAP to 3.1 P12, 3.2 P11, 3.3 P12, 3.4 P7 or 3.5 P4. Check your access logs for strange accounts like "dummyuser". Assume a breach if you find anything weird.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)