Cisco ISE Vulnerability Exposes Sensitive Data to Remote Attackers

Cisco ISE Vulnerability Exposes Sensitive Data to Remote Attackers

First seen 8 Jan 2026, 19:50 UTC CybersecuritynewsGbhackersNetworkworld 83% similarity 32.9

Article Content

Browse articles
ThreatCluster

Cisco has addressed a critical vulnerability in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) that allowed authenticated administrators to access sensitive server files. The vulnerability, identified as CVE-2026-20029, is due to a flaw in XML parsing within the web management interface, with a CVSS score yet to be finalized.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story