Critical Cisco ISE Flaw Enables Remote Denial-of-Service Attacks

Critical Cisco ISE Flaw Enables Remote Denial-of-Service Attacks

First seen 11 Nov 2025, 11:18 UTC Scworld 90% similarity 47.6

Article Content

Browse articles
ThreatCluster

A critical vulnerability in Cisco's Identity Services Engine (ISE), tracked as CVE-2024-20399, allows unauthenticated remote attackers to trigger system restarts, leading to denial-of-service conditions. The flaw affects ISE versions 3.4.0 through 3.4 Patch 3 and can be exploited by sending specially crafted RADIUS requests to rejected endpoints, causing unexpected system crashes.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story