Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2378 articles · 111906 vulns · 38/41 feeds (7d)
← Back to list
4.8
CVE-2026-20132EXPLOITEDPATCHED
cis · identity services engine (ise)

Cisco Identity Services Engine Multiple Cross-Site Scripting Vulnerabilities

Description

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker with administrative write privileges to conduct a stored cross-site scripting (XSS) attack or a reflected XSS attack against a user of the web-based management interface of an affected device. These vulnerabilities are due to insufficient sanitization of user-supplied data that is stored in the web page. An attacker could exploit these vulnerabilities by convincing a user of the interface to click a specific link or view an affected web page. The injected script code may be executed in the context of the web-based management interface or allow the attacker to access sensitive browser-based information.

Affected Products

VendorProductVersions
cisidentity services engine (ise)3.1.0, 3.1.0 p1, 3.1.0 p3, 3.1.0 p2, 3.2.0, 3.1.0 p4, 3.1.0 p5, 3.2.0 p1, 3.1.0 p6, 3.2.0 p2, 3.1.0 p7, 3.3.0, 3.2.0 p3, 3.2.0 p4, 3.1.0 p8, 3.2.0 p5, 3.2.0 p6, 3.1.0 p9, 3.3 Patch 2, 3.3 Patch 1, 3.3 Patch 3, 3.4.0, 3.2.0 p7, 3.3 Patch 4, 3.4 Patch 1, 3.1.0 p10

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
ciscisco identity services engine (ise)cert_advisory90%

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-isexss-BS8ctE7U

Related News (4 articles)

Tier B
BSI Advisories4d ago
[NEU] [hoch] Cisco Identity Services Engine (ISE): Mehrere Schwachstellen
→ No new info (linked only)
Tier B
CCCS Canada5d ago
Cisco security advisory (AV26-357)
→ No new info (linked only)
Tier C
VulDB5d ago
CVE-2026-20132 | Cisco Identity Services Engine Software up to 3.4.0 cross site scripting (cisco-sa-isexss-BS8ctE7U)
→ No new info (linked only)
Tier A
Cisco Security5d ago
Cisco Identity Services Engine Multiple Cross-Site Scripting Vulnerabilities
→ No new info (linked only)
CVSS 3.14.8 MEDIUM
VectorCVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N
CISA KEV❌ No
Actively exploited✅ Yes
Patch available
null
CWECWE-79
PublishedApr 15, 2026
Last enriched5d agov3
Tags
remote code executionpath traversal
Trending Score32
Source articles4
Independent4
Info Completeness10/14
Missing: epss, kev, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-20147EXP
Cisco Identity Services Engine Remote Code Execution Vulnerability
Trending: 86
CRITICALCVE-2026-20184
Cisco Webex Meetings Certificate Validation Vulnerability
Trending: 80
CRITICALCVE-2026-20180
Cisco Identity Services Engine Multiple Remote Code Execution Vulnerability
Trending: 64
CRITICALCVE-2026-20186
Cisco Identity Services Engine Multiple Authenticated Remote Code Execution Vulnerability
Trending: 64
MEDIUMCVE-2026-20148EXP
Cisco Identity Services Engine Path Traversal Vulnerability
Trending: 34

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Apr 15, 2026
Discovered by ZDM
Apr 15, 2026
Updated: patchAvailable
Apr 15, 2026
Updated: severity, exploitAvailable, activelyExploited, patchAvailable, tags
Apr 15, 2026
Actively Exploited
Apr 15, 2026
Exploit Available
Apr 15, 2026
Patch Available
Apr 15, 2026

Version History

v3
Last enriched 5d ago
v3Tier B5d ago

Updated severity to HIGH, marked exploit as available and actively exploited, and added new tags related to remote code execution and path traversal.

severityexploitAvailableactivelyExploitedpatchAvailabletags
via CCCS Canada
v2Tier C5d ago

Updated patch available to version 3.4.1 and confirmed no exploit is available.

patchAvailable
via VulDB
v15d ago

Initial creation