AI description
CVE-2026-20181 is a remote code execution (RCE) vulnerability found in Cisco Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC). The flaw arises from insufficient validation of user-supplied input, which allows an authenticated, remote attacker to send a specially crafted HTTP request. Successful exploitation of this vulnerability grants the attacker the ability to execute arbitrary commands on the underlying operating system, potentially leading to user-level access and subsequent privilege escalation to root. In single-node deployments, this issue could also result in a denial-of-service (DoS) condition.
- Description
- A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit this vulnerability, the attacker must have valid administrative credentials. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root. In single-node deployments, successful exploitation of this vulnerability could cause the affected ISE node to become unavailable, resulting in a denial of service (DoS) condition. In that condition, endpoints that have not already authenticated would be unable to access the network until the node is restored.
- Source
- psirt@cisco.com
- NVD status
- Analyzed
- Products
- identity_services_engine, identity_services_engine_passive_identity_connector
CVSS 3.1
- Type
- Secondary
- Base score
- 9.1
- Impact score
- 6
- Exploitability score
- 2.3
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
- Severity
- CRITICAL
- psirt@cisco.com
- CWE-22
- Hype score
- Not currently trending
ネットワークアクセス制御製品Cisco-ISEおよびCisco-ISE-PIC(Passive-Identity-Connector)に、認証済み管理者がroot権限を奪取できるCVSS-v3.1で9.1の脆弱性CVE-2026-20181が報告されています。管理者権限を持つ認証済みユーザ
@MalwareBibleJP
21 Jun 2026
1303 Impressions
1 Retweet
9 Likes
1 Bookmark
0 Replies
0 Quotes
企業ネットワークへの接続可否を一元管理するCiscoの認証基盤「Identity-Services-Engine(ISE)」に、Critical評価(CVSS-9[.]1)を含む2件の脆弱性が報告されました。深刻なほうのCVE-2026-20181は、管理者権限を持つリモ
@MalwareBibleJP
20 Jun 2026
956 Impressions
1 Retweet
7 Likes
3 Bookmarks
0 Replies
0 Quotes
Cisco corrige falhas no ISE e ISE-PIC 🚨 A Cisco publicou em 17 de junho de 2026 um advisory sobre vulnerabilidades no ISE e no ISE-PIC que exigem atenção imediata das equipes técnicas. A CVE-2026-20181 pode permitir execução remota de código por um atacante autenticado
@brainworkblog
19 Jun 2026
63 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Warning: Cisco released security updates for critical CVE-2026-20181 and high-severity CVE-2026-20190 affecting Cisco ISE and Cisco ISE-PIC. Exploitation allows remote attackers to execute arbitrary code or access sensitive information. Patch Patch Patch https://t.co/498PsOC3kW
@CCBalert
19 Jun 2026
199 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
#Cisco released Security Updates to address multiple Vulnerabilities in Cisco Identity Services Engine (#ISE) and Cisco ISE Passive Identity Connector (#ISE-PIC). Apply Updates! #CVE-2026-20181 #CVE-2026-20190 https://t.co/O1PO6arPQi
@NCIIPC
19 Jun 2026
166 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 Cisco ISE patch watch: Cisco fixed CVE-2026-20181 and CVE-2026-20190 in ISE and ISE-PIC. The advisory says the flaws can enable remote code execution or sensitive information disclosure, with no workarounds. #Cisco #Cyber https://t.co/ElVl2jK4ES
@Divinmentis
18 Jun 2026
58 Impressions
0 Retweets
0 Likes
0 Bookmarks
2 Replies
0 Quotes
『allow a remote attacker to achieve remote code execution or conduct information disclosure attacks on an affected device.』 CVE-2026-20181 CVE-2026-20190 Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities https://t.co/f3fITtqm4R
@autumn_good_35
18 Jun 2026
292 Impressions
0 Retweets
0 Likes
1 Bookmark
0 Replies
0 Quotes
【セキュリティ ニュース】「Cisco ISE」にRCE脆弱性 - 端末の接続に影響するおそれも(1ページ目 / 全2ページ):Security NEXT https://t.co/jk6yaf7Smc CVE-2026-20181/CVE-2026-20190 Cisco Identity Services Engineにおけるリモートコー
@taku888infinity
18 Jun 2026
1288 Impressions
1 Retweet
3 Likes
3 Bookmarks
0 Replies
0 Quotes
🚨*CVE* CVE-2026-20181 A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected… https://t.co/2u4yF0apGo ----- Traducción: Una vulnerabilidad… https://t.co/utmtNg
@infoflowcloud
17 Jun 2026
57 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Critical Cisco ISE vulnerabilities expose networks to Remote Code Execution (CVE-2026-20181) and data theft (CVE-2026-20190). Patch affected systems now. #CiscoISE #CyberSecurity #CVE202620181 #CVE202620190 #InfoSec https://t.co/Rdjc5MElon https://t.co/DhHIGCFdwU
@Daily_CyberSec
17 Jun 2026
414 Impressions
0 Retweets
0 Likes
1 Bookmark
0 Replies
1 Quote
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:*:*:*:*:*:*:*:*",
"matchCriteriaId": "804C2F93-8ADC-454A-90DF-59F51FEF9E0A",
"versionEndExcluding": "3.3.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:-:*:*:*:*:*:*",
"matchCriteriaId": "F1B9C2C1-59A4-49A0-9B74-83CCB063E55D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch1:*:*:*:*:*:*",
"matchCriteriaId": "DFD29A0B-0D75-4EAB-BCE0-79450EC75DD0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch10:*:*:*:*:*:*",
"matchCriteriaId": "43F3A55D-D4FC-4D93-9513-94B64B21A2B4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch2:*:*:*:*:*:*",
"matchCriteriaId": "E6C94CC4-CC08-4DAF-A606-FDAFC92720A9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch3:*:*:*:*:*:*",
"matchCriteriaId": "BB069EA3-7B8C-42B5-8035-2EE5ED3F56E4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch4:*:*:*:*:*:*",
"matchCriteriaId": "FF8B81A6-BF44-4E5F-B167-39F61DDCA026",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch5:*:*:*:*:*:*",
"matchCriteriaId": "56E0F0EC-3E66-4866-89F5-89B331F3F517",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch6:*:*:*:*:*:*",
"matchCriteriaId": "2E3E8937-2859-4A2A-91C0-05F674EF0466",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch7:*:*:*:*:*:*",
"matchCriteriaId": "D4B14684-EB9E-405B-85FA-B62E57CB292C",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch8:*:*:*:*:*:*",
"matchCriteriaId": "22B752D1-9E8F-4FB7-8EEB-F9234492372B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.3.0:patch9:*:*:*:*:*:*",
"matchCriteriaId": "85A1CC7D-FE54-4AC0-B98F-972C4B1F3189",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.4.0:-:*:*:*:*:*:*",
"matchCriteriaId": "D23905E0-E525-49B1-8E5F-4EB42D186768",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.4.0:patch1:*:*:*:*:*:*",
"matchCriteriaId": "74509498-38EF-4345-9583-CEF5C26CA1D8",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.4.0:patch2:*:*:*:*:*:*",
"matchCriteriaId": "CD05FF93-7B8C-4283-9DB7-E03FE98FAADF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.4.0:patch3:*:*:*:*:*:*",
"matchCriteriaId": "0F9B6A8E-E773-44A3-9266-878F0C58EB41",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.4.0:patch4:*:*:*:*:*:*",
"matchCriteriaId": "D3727619-E0CA-4CA9-BE35-0C732BCF1741",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.4.0:patch5:*:*:*:*:*:*",
"matchCriteriaId": "2CFB7565-3930-409C-B5DB-CE77E6ED7C42",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.5.0:-:*:*:*:*:*:*",
"matchCriteriaId": "2610FD35-BC4B-41B7-9C92-E6E5264FEE54",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.5.0:patch1:*:*:*:*:*:*",
"matchCriteriaId": "3FEE4377-B238-4442-9892-28CECFB2319E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.5.0:patch2:*:*:*:*:*:*",
"matchCriteriaId": "6598563B-7E32-43FB-96A7-88C53E4CE226",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine:3.5.0:patch3:*:*:*:*:*:*",
"matchCriteriaId": "719C8E82-269D-4F21-B2B4-4CD3033A17F9",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:*:*:*:*:*:*:*:*",
"matchCriteriaId": "E7F4D769-1845-41F0-8F15-B5D8AC15DFD9",
"versionEndExcluding": "3.3.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:-:*:*:*:*:*:*",
"matchCriteriaId": "3CA3315D-8A45-43F4-A0F0-094D325F285B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch1:*:*:*:*:*:*",
"matchCriteriaId": "B3736136-9FD8-4B12-B119-EA15201224D9",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch10:*:*:*:*:*:*",
"matchCriteriaId": "FB15AE6D-F4EF-40AD-A88E-D22612AEF2A4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch2:*:*:*:*:*:*",
"matchCriteriaId": "654ED77E-22D3-4E76-9E6D-B1581F5982F0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch3:*:*:*:*:*:*",
"matchCriteriaId": "A0648EE9-F042-479F-9AAB-C6B5DBC46511",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch4:*:*:*:*:*:*",
"matchCriteriaId": "83F3BA58-4F38-41C8-956F-38A2F44EECE4",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch5:*:*:*:*:*:*",
"matchCriteriaId": "6C30FA1D-91E2-48C5-B181-A88FDF668278",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch6:*:*:*:*:*:*",
"matchCriteriaId": "768215B1-80B7-40FF-8772-BA4C0B3913F5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch7:*:*:*:*:*:*",
"matchCriteriaId": "40239DA8-43B6-466B-85B0-6D644D7027D1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch8:*:*:*:*:*:*",
"matchCriteriaId": "9118B7ED-E678-47C3-9D17-F522D9362B2F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.3.0:patch9:*:*:*:*:*:*",
"matchCriteriaId": "C2ED3257-CB9D-4FD5-A482-3648CF292128",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.4.0:-:*:*:*:*:*:*",
"matchCriteriaId": "CC0525FD-C4D7-4B48-BF35-1791391AB148",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.4.0:patch1:*:*:*:*:*:*",
"matchCriteriaId": "68C96F6B-51EE-4D03-9598-CBFD16DA22EF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.4.0:patch2:*:*:*:*:*:*",
"matchCriteriaId": "62F25185-D19E-4EC5-8A68-7AB669B76E90",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.4.0:patch3:*:*:*:*:*:*",
"matchCriteriaId": "C457D2EC-FB63-49B7-A90E-CE67ED763BAE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.4.0:patch4:*:*:*:*:*:*",
"matchCriteriaId": "6566330F-A048-44A1-9821-7A5844C82CEC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.4.0:patch5:*:*:*:*:*:*",
"matchCriteriaId": "1154F196-2CB3-4AC2-BE00-11A8942EA999",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.5.0:-:*:*:*:*:*:*",
"matchCriteriaId": "2A7003EB-C578-4C02-B768-F8C4C8421382",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.5.0:patch1:*:*:*:*:*:*",
"matchCriteriaId": "16B32F60-CEB7-4816-AA7C-3130D1053DC5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.5.0:patch2:*:*:*:*:*:*",
"matchCriteriaId": "755761D7-8DDD-4219-8E37-FA535757710A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:cisco:identity_services_engine_passive_identity_connector:3.5.0:patch3:*:*:*:*:*:*",
"matchCriteriaId": "656248A2-92B4-40B8-8D81-1135A4F35D20",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]