Identity services engine
This hub aggregates every CVE we track for Identity services engine, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
167
CVEs tracked
10
Critical
18
High
3
In CISA KEV
Severity distribution
MEDIUM136HIGH18CRITICAL10LOW3
Monthly trend
1
5
1
1
13
0
0
4
0
0
2
5
4
0
0
0
5
0
2
0
0
0
0
2
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Identity services engine.
- CVE-2026-20190Cisco Identity Services Engine Information Disclosure Vulnerability7.5
- CVE-2026-20181Cisco Identity Services Engine Remote Code Execution Vulnerability9.1
- CVE-2026-20047Cisco Identity Services Engine Cross-Site Scripting Vulnerability4.8
- CVE-2026-20076Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability4.8
- CVE-2025-20304Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...5.4
- CVE-2025-20305A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to obtain sensitive information from an affected device. This vulnerability exist...4.3
- CVE-2025-20289Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...4.8
- CVE-2025-20303Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...5.4
- CVE-2025-20343Cisco Identity Services Engine Radius Suppression Denial of Service Vulnerability8.6
- CVE-2025-20337Cisco ISE API Unauthenticated Remote Code Execution VulnerabilityKEV10.0
- CVE-2025-20285Cisco Identity Services Engine IP Filter Access Restriction for Admin Access Configuration Bypass Vulnerability4.1
- CVE-2025-20284Cisco Identity Services Engine Authenticated Remote Code Execution Vulnerability6.5
- CVE-2025-20283Cisco Identity Services Engine Authenticated Remote Code Execution Vulnerability6.5
- CVE-2025-20282Cisco ISE API Unauthenticated Remote Code Execution Vulnerability10.0
- CVE-2025-20281Cisco ISE API Unauthenticated Remote Code Execution VulnerabilityKEV10.0
Product normalization is registry-driven with AI assist and human review. How it works