Cisco Identity Services Engine Authentication Bypass Vulnerability

Chronological Source Flow
Back

AI Fusion Summary

Cisco has released software updates to address several critical vulnerabilities. An API flaw in Cisco Identity Services Engine (ISE) allows unauthenticated remote attackers to bypass authentication and gain unauthorized access. Additionally, vulnerabilities in Cisco ISE and Cisco ISE Passive Identity Connector (ISE-PIC) could enable data manipulation or sensitive information theft. Separately, a missing authorization check in Cisco BroadWorks CommPilot Application Software allows authenticated low-privilege users to alter configurations. No workarounds exist for these security issues.
Community Comments
Loading updates...
0