ISE Passive Identity Connector — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
January 8, 2026
Last Seen
January 8, 2026

ISE Passive Identity Connector is a component of Cisco Identity Services Engine used to collect identity information from endpoints passively for network access control.

Overview

ISE Passive Identity Connector is a component of Cisco Identity Services Engine used to collect identity information from endpoints passively for network access control. A vulnerability affecting Cisco ISE (including the Passive Identity Connector) was disclosed, with attackers potentially exploiting it if unpatched, making timely remediation critical due to the central role of ISE in identity and access management.

Related Threat Clusters

  • Cisco Patches ISE Vulnerability with Public Exploit Code

    Cisco has patched a vulnerability in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) products. The flaw, tracked as CVE-2026-20029, allows remote attackers with admin-level privileges to…

    7 articles · Updated January 8, 2026
  • Cisco Patches Medium-Severity ISE Vulnerability After PoC Exploit

    Cisco has patched a medium-severity vulnerability in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) after a public proof-of-concept (PoC) exploit was disclosed. The vulnerability,…

    4 articles · Updated January 8, 2026

Recent Intelligence Reports

  • Patch Cisco ISE bug now before attackers abuse proof-of — Theregister · January 8, 2026
  • Public PoC prompts Cisco patch for ISE, ISE — Securityaffairs.Co · January 8, 2026

CVSS v3.1 Breakdown