Skip to content
Critical Cisco ISE Flaw Enables Remote Denial-of-Service Attacks

Critical Cisco ISE Flaw Enables Remote Denial-of-Service Attacks

First seen 11 Nov 2025, 11:18 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

A critical vulnerability in Cisco's Identity Services Engine (ISE), tracked as CVE-2024-20399, allows unauthenticated remote attackers to trigger system restarts, leading to denial-of-service conditions. The flaw affects ISE versions 3.4.0 through 3.4 Patch 3 and can be exploited by sending specially crafted RADIUS requests to rejected endpoints, causing unexpected system crashes.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 184d ago How this analysis works

More articles in this cluster (1)

Following this threat?

Track CVE-2024-20399 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed