CVE Tools

Cisco Identity Services Engine

159 CVEs tracked. 4 of them are in CISA KEV.

This hub aggregates every CVE we track for Cisco Identity Services Engine, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.

Cisco Identity Services Engine CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Cisco Identity Services Engine CVEs per month
MonthCVEs
2024-101
2024-1112
2024-120
2025-010
2025-023
2025-030
2025-040
2025-052
2025-064
2025-074
2025-083
2025-090
2025-100
2025-115
2025-120
2026-013
2026-020
2026-030
2026-046
2026-050
2026-060
2026-070
2026-080
2026-090

Severity

How the 159 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical138%
  • High149%
  • Medium13082%
  • Low21%

Latest CVEs

The 15 most recently published vulnerabilities affecting Cisco Identity Services Engine.

  1. CVE-2026-20136Cisco Identity Services Engine Authenticated Privilege Escalation Vulnerability6.0
  2. CVE-2026-20180Cisco Identity Services Engine Multiple Remote Code Execution Vulnerability9.9
  3. CVE-2026-20186Cisco Identity Services Engine Multiple Authenticated Remote Code Execution Vulnerability9.9
  4. CVE-2026-20148Cisco Identity Services Engine Path Traversal Vulnerability4.9
  5. CVE-2026-20147Cisco Identity Services Engine Remote Code Execution Vulnerability9.9
  6. CVE-2026-20132Cisco Identity Services Engine Multiple Cross-Site Scripting Vulnerabilities4.8
  7. CVE-2026-20047Cisco Identity Services Engine Cross-Site Scripting Vulnerability4.8
  8. CVE-2026-20076Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability4.8
  9. CVE-2026-20029Cisco Identity Services Engine XML External Entity Processing Information Disclosure Vulnerability4.9
  10. CVE-2025-20304Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...5.4
  11. CVE-2025-20305A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to obtain sensitive information from an affected device. This vulnerability exist...4.3
  12. CVE-2025-20289Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...4.8
  13. CVE-2025-20303Multiple vulnerabilities in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct a reflected XSS attack against a user of the i...5.4
  14. CVE-2025-20343Cisco Identity Services Engine Radius Suppression Denial of Service Vulnerability8.6
  15. CVE-2025-20131Cisco Identity Services Engine Arbitrary File Upload Vulnerability4.9

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store