VORANT. Threat Intelligence Sign in Get the full feed

Cisco ISE RCE flaws affect multiple versions

high vulnerability

Two vulnerabilities in Cisco Identity Services Engine allow remote code execution and confidential data exposure across versions 3.3.x through 3.5.x.

CERT-FR has issued an advisory regarding multiple vulnerabilities discovered in Cisco Identity Services Engine (ISE) and ISE-PIC products. The flaws enable attackers to achieve remote arbitrary code execution and compromise data confidentiality.

Affected versions include ISE and ISE-PIC 3.4.x prior to 3.4 Patch 6, versions 3.5.x prior to 3.5 Patch 3, and versions prior to 3.3 Patch 11. Cisco has indicated that version 3.5 Patch 4, which will address both vulnerabilities, is scheduled for release in August 2026.

Organizations running affected Cisco ISE versions should consult the vendor's security bulletin for available patches and implement updates according to their maintenance windows, prioritizing internet-facing or high-value ISE deployments.

Mentioned in this report

Vulnerabilities CVE-2026-20181CVE-2026-20190

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0772/

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free