Cisco Identity Services Engine(Cisco ISE)是美国思科(Cisco)公司的一款环境感知平台(ISE身份服务引擎)。该平台通过收集网络、用户和设备中的实时信息,制定并实施相应策略来监管网络。 Cisco Identity Services Engine(Cisco ISE)存在安全漏洞,该漏洞源于凭据生成不当,可能导致敏感数据泄露或服务中断。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Identity Services Engine Software | 3.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-20261 | 8.8 HIGH | Cisco Integrated Management Controller Privilege Escalation Vulnerability |
| CVE-2025-20163 | 8.7 HIGH | Cisco Nexus Dashboard Fabric Controller SSH Host Key Vulnerability |
| CVE-2025-20273 | 6.1 MEDIUM | Cisco Unified Intelligent Contact Management Enterprise Cross-Site Scripting vulnerability |
| CVE-2025-20278 | 6.0 MEDIUM | Cisco Unified Communications Products Command Injection Vulnerability |
| CVE-2025-20259 | 5.3 MEDIUM | Cisco ThousandEyes Endpoint Agent for Windows Arbitrary File Write Vulnerability |
| CVE-2025-20275 | 5.3 MEDIUM | Cisco Unified Contact Center Express Editor Remote Code Execution Vulnerability |
| CVE-2025-20130 | 4.9 MEDIUM | Cisco Identity Services Engine Access Control Bypass Vulnerability |
| CVE-2025-20279 | 4.8 MEDIUM | Cisco Unifed Contact Center Express Stored Cross-Site Scripting Vulnerability |
| CVE-2025-20129 | 4.3 MEDIUM | Cisco Customer Collaboration Platform Information Disclosure Vulnerability |
| CVE-2025-20276 | 3.8 LOW | Cisco Unified Contact Center Express Remote Code Execution Vulnerability |
| CVE-2025-20277 | 3.4 LOW | Cisco Unified Contact Center Express Path Traversal Vulnerability |
No comments yet