Cisco Identity Services Engine Vulnerabilities

Chronological Source Flow
Back

AI Fusion Summary

Cisco has released software updates to address multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC). These flaws could allow remote attackers to bypass REST API authentication, execute remote code, perform SQL injection, and conduct path traversal or XSS attacks. Additionally, vulnerabilities in the RADIUS feature could cause denial of service, while others allow authenticated attackers to modify configurations or local attackers to hijack 802.1X sessions and disclose sensitive information.
Community Comments
Loading updates...
0