Identity services engine passive identity connector (ise-pic)
This hub aggregates every CVE we track for Identity services engine passive identity connector (ise-pic), a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
13
CVEs tracked
2
Critical
0
High
1
In CISA KEV
Severity distribution
MEDIUM11CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
4
1
0
0
3
0
2
0
0
3
0
0
0
0
2024-092026-08
Latest CVEs
The 13 most recently published vulnerabilities affecting Identity services engine passive identity connector (ise-pic).
- CVE-2026-20136Cisco Identity Services Engine Authenticated Privilege Escalation Vulnerability6.0
- CVE-2026-20148Cisco Identity Services Engine Path Traversal Vulnerability4.9
- CVE-2026-20147Cisco Identity Services Engine Remote Code Execution Vulnerability9.9
- CVE-2026-20047Cisco Identity Services Engine Cross-Site Scripting Vulnerability4.8
- CVE-2026-20029Cisco Identity Services Engine XML External Entity Processing Information Disclosure Vulnerability4.9
- CVE-2025-20304Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...5.4
- CVE-2025-20289Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...4.8
- CVE-2025-20303Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...5.4
- CVE-2025-20331Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabiliy5.4
- CVE-2025-20337Cisco ISE API Unauthenticated Remote Code Execution VulnerabilityKEV10.0
- CVE-2025-20285Cisco Identity Services Engine IP Filter Access Restriction for Admin Access Configuration Bypass Vulnerability4.1
- CVE-2025-20284Cisco Identity Services Engine Authenticated Remote Code Execution Vulnerability6.5
- CVE-2025-20283Cisco Identity Services Engine Authenticated Remote Code Execution Vulnerability6.5
Product normalization is registry-driven with AI assist and human review. How it works