Cisco

Identity Services Engine Passive Identity Connector

31 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.35%
  • Veröffentlicht 16.09.2026 20:26:30
  • Zuletzt bearbeitet 28.09.2026 13:01:26

A vulnerability in the REST API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct SQL injection attacks against the monitoring database. This vulnerability is due to insufficient validation of specific paramet...

  • EPSS 1.13%
  • Veröffentlicht 16.09.2026 20:24:53
  • Zuletzt bearbeitet 28.09.2026 13:14:22

A vulnerability in the file management function of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to delete arbitrary files and directories on an affected device. To exploit this vulner...

  • EPSS 0.28%
  • Veröffentlicht 16.09.2026 20:24:42
  • Zuletzt bearbeitet 28.09.2026 13:09:41

A vulnerability in the Online Certificate Status Protocol (OCSP) responder of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to cause an administrative reload of the OCSP responder certificate and key material. This vu...

  • EPSS 0.3%
  • Veröffentlicht 16.09.2026 20:20:48
  • Zuletzt bearbeitet 28.09.2026 13:12:26

A vulnerability in an API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to read specific files on the underlying operating system of an affected device. This vulnerability is due to improper restriction of XML e...

  • EPSS 0.88%
  • Veröffentlicht 16.09.2026 20:20:38
  • Zuletzt bearbeitet 28.09.2026 13:14:32

A vulnerability in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker with administrative-level privileges to write arbitrary files on an affected device. This vulnerability exists becau...

  • EPSS 0.33%
  • Veröffentlicht 16.09.2026 20:19:21
  • Zuletzt bearbeitet 28.09.2026 13:02:42

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...

  • EPSS 0.27%
  • Veröffentlicht 16.09.2026 20:19:20
  • Zuletzt bearbeitet 28.09.2026 13:14:16

A vulnerability in the certificate import functionality of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to read arbitrary files from the affected system. To exploit this vulnerability...

  • EPSS 0.29%
  • Veröffentlicht 16.09.2026 20:19:12
  • Zuletzt bearbeitet 28.09.2026 13:06:58

A vulnerability in an internal service of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to retrieve sensitive configuration information from an affected device. This vulnerability is due to missing authentication on t...

  • EPSS 0.25%
  • Veröffentlicht 16.09.2026 20:19:02
  • Zuletzt bearbeitet 28.09.2026 13:03:39

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...

  • EPSS 0.33%
  • Veröffentlicht 16.09.2026 20:18:15
  • Zuletzt bearbeitet 28.09.2026 13:04:03

A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...