Cisco has released patches for two critical vulnerabilities in its Identity Services Engine (ISE) and Passive Identity Connector that could allow remote code execution. These flaws, CVE-2025-20281 and CVE-2025-20282, are rated 10/10 and require urgent attention to prevent exploitation. #CiscoISE #RemoteCodeExecution
Keypoints
- Cisco announced patches for two high-severity vulnerabilities affecting ISE and ISE-PIC.
- Both vulnerabilities can be exploited without authentication to execute arbitrary code or place files in privileged directories.
- CVE-2025-20281 impacts APIs related to user input validation, while CVE-2025-20282 involves file validation issues.
- The flaws affect specific versions, with fixes introduced in ISE and ISE-PIC patches 3.3 and 3.4.
- Users are urged to apply patches immediately to mitigate the risk of exploitation, although no attacks have been reported in the wild.
Read More: https://www.securityweek.com/critical-cisco-ise-vulnerabilities-allow-remote-code-execution/