News

Cisco also warns that customers who applied the patches for CVE-2025-20281 and CVE-2025-20282 are not covered from CVE-2025-20337, and need to upgrade to ISE 3.3 Patch 7 or ISE 3.4 Patch 2.
Rated critical The vulnerabilities — rated by Cisco as critical — are: CVE-2025-20281 affects Cisco ISE and ISE-PIC releases 3.3 and later, regardless of device configuration.
Cisco's Secure Firewall Management Center security hole is as bad as they get. There is no mitigation and no workaround. Patch immediately. So far, no confirmed active exploits have been confirmed.
A maximum-severity vulnerability was recently discovered, and patched, in Cisco Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC). This flaw allowed threat actors to ...
They are both rated with the highest severity level, with a CVSS3.1 score of 10. Cisco has released patches for each affected version of Cisco ISE and Cisco ISE-PIC. Cisco Product Security Incident ...
Cisco has published a bulletin to warn about two critical, unauthenticated remote code execution (RCE) vulnerabilities affecting Cisco Identity Services Engine (ISE) and the Passive Identity ...
In early February 2025, Cisco released patches for two critical-severity vulnerabilities plaguing its Identity Services Engine (ISE) solution.