CVE-2026-20300
- EPSS 0.29%
- Veröffentlicht 16.09.2026 20:20:38
- Zuletzt bearbeitet 18.09.2026 15:17:07
A vulnerability in Cisco ISE could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected device. To exploit this vulnerability, the attacker must have at least low-privileged administrative credentials. This vulne...
CVE-2026-76432
- EPSS 0.88%
- Veröffentlicht 16.09.2026 20:20:38
- Zuletzt bearbeitet 28.09.2026 13:14:32
A vulnerability in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker with administrative-level privileges to write arbitrary files on an affected device. This vulnerability exists becau...
CVE-2026-76448
- EPSS 0.33%
- Veröffentlicht 16.09.2026 20:19:21
- Zuletzt bearbeitet 28.09.2026 13:02:42
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...
CVE-2026-76434
- EPSS 0.27%
- Veröffentlicht 16.09.2026 20:19:20
- Zuletzt bearbeitet 28.09.2026 13:14:16
A vulnerability in the certificate import functionality of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to read arbitrary files from the affected system. To exploit this vulnerability...
CVE-2026-76444
- EPSS 0.29%
- Veröffentlicht 16.09.2026 20:19:12
- Zuletzt bearbeitet 28.09.2026 13:06:58
A vulnerability in an internal service of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to retrieve sensitive configuration information from an affected device. This vulnerability is due to missing authentication on t...
CVE-2026-20235
- EPSS 0.29%
- Veröffentlicht 16.09.2026 20:19:02
- Zuletzt bearbeitet 22.09.2026 21:17:30
A vulnerability in the API of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to view sensitive information on an affected device. To exploit this vulnerability, the attacker must have valid administrative credentia...
CVE-2026-76451
- EPSS 0.25%
- Veröffentlicht 16.09.2026 20:19:02
- Zuletzt bearbeitet 28.09.2026 13:03:39
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...
CVE-2026-76449
- EPSS 0.33%
- Veröffentlicht 16.09.2026 20:18:15
- Zuletzt bearbeitet 28.09.2026 13:04:03
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...
CVE-2026-76450
- EPSS 0.25%
- Veröffentlicht 16.09.2026 20:18:06
- Zuletzt bearbeitet 28.09.2026 13:03:56
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct an SQL or HQL injection attack on an affected device. This vulnerability is due to ...
CVE-2026-20309
- EPSS 0.19%
- Veröffentlicht 16.09.2026 20:17:58
- Zuletzt bearbeitet 18.09.2026 13:28:28
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. This vulnerabil...