Cisco Identity Services Engine vulnerabilities
166 known vulnerabilities affecting cisco/identity_services_engine.
Total CVEs
166
CISA KEV
3
actively exploited
Public exploits
5
Exploited in wild
5
Severity breakdown
CRITICAL11HIGH37MEDIUM116LOW2
Vulnerabilities
Page 6 of 9
CVE-2019-1736P4MEDIUMCVSS 6.6v2.4\(0.357\)v2.6\(0.156\)2020-09-23
CVE-2019-1736 [MEDIUM] CWE-347 CVE-2019-1736: A vulnerability in the firmware of the Cisco UCS C-Series Rack Servers could allow an authenticated,
A vulnerability in the firmware of the Cisco UCS C-Series Rack Servers could allow an authenticated, physical attacker to bypass Unified Extensible Firmware Interface (UEFI) Secure Boot validation checks and load a compromised software image on an affected device. The vulnerability is due to improper validation of the server firmware upgrade images. A
nvd
CVE-2020-3156P4MEDIUMCVSS 6.1v2.6.0v2.72020-02-19
CVE-2020-3156 [MEDIUM] CWE-79 CVE-2020-3156: A vulnerability in the logging component of Cisco Identity Services Engine could allow an unauthenti
A vulnerability in the logging component of Cisco Identity Services Engine could allow an unauthenticated remote attacker to conduct cross-site scripting attacks. The vulnerability is due to the improper validation of endpoint data stored in logs used by the web-based interface. An attacker could exploit this vulnerability by sending malicious endpoint
nvd
CVE-2024-20538P4MEDIUMCVSS 6.1v3.0.0v3.1.0+2 more2024-11-06
CVE-2024-20538 [MEDIUM] CWE-79 CVE-2024-20538: A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, r
A vulnerability in the web-based management interface of Cisco ISE could allow an unauthenticated, remote attacker to conduct an XSS attack against a user of the interface.
This vulnerability exists because the web-based management interface does not sufficiently validate user-supplied input. An attacker could exploit this vulnerability by persuadin
nvd
CVE-2018-0216P4MEDIUMCVSS 5.4v2.0\(0.249\)v2.1\(0.476\)+2 more2018-03-08
CVE-2018-0216 [MEDIUM] CWE-352 CVE-2018-0216: A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability is due to insufficient CSRF protections for the web-based management interface of an af
nvd
CVE-2025-20289P4MEDIUMCVSS 5.4≤ 3.1.0v3.2.0+2 more2025-11-05
CVE-2025-20289 [MEDIUM] CWE-79 CVE-2025-20289: Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could
Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the interface.
These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An at
nvd
CVE-2025-20304P4MEDIUMCVSS 5.4≤ 3.1.0v3.2.0+2 more2025-11-05
CVE-2025-20304 [MEDIUM] CWE-79 CVE-2025-20304: Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could
Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the interface.
These vulnerabilities are due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An at
nvd
CVE-2023-20174P4MEDIUMCVSS 4.9fixed in 3.0.0v3.0.0+2 more2023-05-18
CVE-2023-20174 [MEDIUM] CWE-611 CVE-2023-20174: Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (IS
Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to read arbitrary files or conduct a server-side request forgery (SSRF) attack through an affected device. To exploit these vulnerabilities, an attacker must have valid Administrator credentials on the
nvd
CVE-2023-20194P4MEDIUMCVSS 4.9≤ 2.7v3.0.0+2 more2023-09-07
CVE-2023-20194 [MEDIUM] CWE-268 CVE-2023-20194: A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read ar
A vulnerability in the ERS API of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files on the underlying operating system of an affected device. To exploit this vulnerability, an attacker must have valid Administrator-level privileges on the affected device. This vulnerability is due to improper privilege management in the
nvd
CVE-2023-20167P4MEDIUMCVSS 4.9fixed in 3.1v3.1+1 more2023-05-18
CVE-2023-20167 [MEDIUM] CWE-24 CVE-2023-20167: Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attack
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to perform path traversal attacks on the underlying operating system to either elevate privileges to root or read arbitrary files. To exploit these vulnerabilities, an attacker must have valid Administrator credentials on the affected device. For mo
nvd
CVE-2023-20172P4MEDIUMCVSS 4.9v3.1v3.22023-05-18
CVE-2023-20172 [MEDIUM] CWE-602 CVE-2023-20172: Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attack
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system. To exploit these vulnerabilities, an attacker must have valid credentials on an affected device. For more information about these vulnerabilities, see the Details section of this
nvd
CVE-2012-3908P4MEDIUMCVSS 6.8v33002012-09-16
CVE-2012-3908 [MEDIUM] CWE-352 CVE-2012-3908: Multiple cross-site request forgery (CSRF) vulnerabilities in the ISE Administrator user interface (
Multiple cross-site request forgery (CSRF) vulnerabilities in the ISE Administrator user interface (aka the Apache Tomcat interface) on Cisco Identity Services Engine (ISE) 3300 series appliances before 1.1.0.665 Cumulative Patch 1 allow remote attackers to hijack the authentication of administrators, aka Bug ID CSCty46684.
nvd
CVE-2017-6733P4MEDIUMCVSS 6.1v2.1\(102.101\)v2.2\(0.283\)+1 more2017-07-10
CVE-2017-6733 [MEDIUM] CWE-79 CVE-2017-6733: A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) p
A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd87482. Known Affected Releases: 2.1(102.101) 2.2(0.283) 2.3(0.15
nvd
CVE-2017-6701P4MEDIUMCVSS 6.1v2.1\(102.101\)2017-07-04
CVE-2017-6701 [MEDIUM] CWE-79 CVE-2017-6701: A vulnerability in the web application interface of the Cisco Identity Services Engine (ISE) portal
A vulnerability in the web application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd49141. Known Affected Releases: 2.1(102.101).
nvd
CVE-2020-3353P4MEDIUMCVSS 5.9v2.2.0.470v2.3.0.298+1 more2020-06-03
CVE-2020-3353 [MEDIUM] CWE-362 CVE-2020-3353: A vulnerability in the syslog processing engine of Cisco Identity Services Engine (ISE) could allow
A vulnerability in the syslog processing engine of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a race condition that may occur when syslog messages are processed. An attacker could exploit this vulnerability by sendin
nvd
CVE-2024-20443P4MEDIUMCVSS 5.4v2.7.0v3.0.0+3 more2024-08-07
CVE-2024-20443 [MEDIUM] CWE-79 CVE-2024-20443: A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, rem
A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a user of the interface.
This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit this vulnerabilit
nvd
CVE-2024-20487P4MEDIUMCVSS 5.4≥ 3.0.0, < 3.1.0v3.1.0+2 more2024-11-06
CVE-2024-20487 [MEDIUM] CWE-79 CVE-2024-20487: A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, rem
A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct a stored XSS attack against a user of the interface.
This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit this vulner
nvd
CVE-2024-20476P4MEDIUMCVSS 4.9fixed in 3.1v3.1.0+2 more2024-11-06
CVE-2024-20476 [MEDIUM] CWE-602 CVE-2024-20476: A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, rem
A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to bypass the authorization mechanisms for specific file management functions.
This vulnerability is due to lack of server-side validation of Administrator permissions. An attacker could exploit this vulnerability by submitting a crafted
nvd
CVE-2025-20305P4MEDIUMCVSS 4.9≤ 3.1.0v3.2.0+2 more2025-11-05
CVE-2025-20305 [MEDIUM] CWE-1220 CVE-2025-20305: A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, rem
A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to obtain sensitive information from an affected device.
This vulnerability exists because certain files lack proper data protection mechanisms. An attacker with read-only Administrator privileges could exploit this vulnerability by perf
nvd
CVE-2019-1941P4MEDIUMCVSS 6.1fixed in 2.4.0v2.4\(0.902\)+2 more2019-07-17
CVE-2019-1941 [MEDIUM] CWE-79 CVE-2019-1941: A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability exists because the web-based management interface does not properly vali
nvd
CVE-2020-3551P4MEDIUMCVSS 6.1v2.6v2.72020-11-06
CVE-2020-3551 [MEDIUM] CWE-79 CVE-2020-3551: A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. The vulnerability exists because the web-based management interface does not properly validate user-supplied in
nvd