Critical Cisco ISE Vulnerabilities Allow Remote Code Execution 

Critical Cisco ISE Vulnerabilities Allow Remote Code Execution 

Cisco has released patches for two critical vulnerabilities in its Identity Services Engine (ISE) and Passive Identity Connector that could allow remote code execution. These flaws, CVE-2025-20281 and CVE-2025-20282, are rated 10/10 and require urgent attention to prevent exploitation. #CiscoISE #RemoteCodeExecution

Keypoints

  • Cisco announced patches for two high-severity vulnerabilities affecting ISE and ISE-PIC.
  • Both vulnerabilities can be exploited without authentication to execute arbitrary code or place files in privileged directories.
  • CVE-2025-20281 impacts APIs related to user input validation, while CVE-2025-20282 involves file validation issues.
  • The flaws affect specific versions, with fixes introduced in ISE and ISE-PIC patches 3.3 and 3.4.
  • Users are urged to apply patches immediately to mitigate the risk of exploitation, although no attacks have been reported in the wild.

Read More: https://www.securityweek.com/critical-cisco-ise-vulnerabilities-allow-remote-code-execution/