CVE Tools

Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks

The Hacker NewsBy The Hacker News

Reported exploitedIdentity Services Engine (ISE)ISE Passive Identity Connector (ISE-PIC)

Our summary

Cisco says CVE-2026-76460, a CVSS 10.0 authentication bypass in Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC), is being exploited in the wild. A crafted request to an affected API can let an unauthenticated remote attacker bypass the web management interface and potentially obtain root-level command execution. Update to 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, or 3.5 Patch 4; Cisco reports no workaround.

Read at The Hacker News

The Hacker News publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store