Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2402 articles · 111888 vulns · 38/41 feeds (7d)
← Back to list
9.9
CVE-2026-20180
cis · identity services

Cisco Identity Services Engine Multiple Remote Code Execution Vulnerability

Description

A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit this vulnerability, the attacker must have at least Read Only Admin credentials. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain user-level access to the underlying operating system and then elevate privileges to root. In single-node ISE deployments, successful exploitation of these vulnerabilities could cause the affected ISE node to become unavailable, resulting in a denial of service (DoS) condition. In that condition, endpoints that have not already authenticated would be unable to access the network until the node is restored.

Affected Products

VendorProductVersions
cisidentity services3.1.0, 3.1.0 p1, 3.1.0 p3, 3.1.0 p2, 3.2.0, 3.1.0 p4, 3.1.0 p5, 3.2.0 p1, 3.1.0 p6, 3.2.0 p2, 3.1.0 p7, 3.3.0, 3.2.0 p3, 3.2.0 p4, 3.1.0 p8, 3.2.0 p5, 3.2.0 p6, 3.1.0 p9, 3.3 Patch 2, 3.3 Patch 1, 3.3 Patch 3, 3.4.0, 3.2.0 p7, 3.3 Patch 4, 3.4 Patch 1, 3.1.0 p10, 3.3 Patch 5, 3.3 Patch 6, 3.4 Patch 2, 3.3 Patch 7, 3.4 Patch 3, 3.5.0, 3.2 Patch 8

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
ciscisco identity services engine (ise)cert_advisory90%

References

  • https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-rce-4fverepv

Related News (7 articles)

Tier D
The Hacker News2h ago
⚡ Weekly Recap: Vercel Hack, Push Fraud, QEMU Abused, New Android RATs Emerge & More
→ No new info (linked only)
Tier D
BleepingComputer4d ago
Cisco says critical Webex Services flaw requires customer action
→ No new info (linked only)
Tier B
BSI Advisories4d ago
[NEU] [hoch] Cisco Identity Services Engine (ISE): Mehrere Schwachstellen
→ No new info (linked only)
Tier D
Heise Security4d ago
Cisco: Kritische Codeschmuggel-Lücken in ISE und mehr geschlossen
→ No new info (linked only)
Tier B
CERT-FR4d ago
Multiples vulnérabilités dans les produits Cisco (16 avril 2026)
→ No new info (linked only)
Tier C
VulDB5d ago
CVE-2026-20180 | Cisco Identity Services Engine Software up to 3.5.0 path traversal (cisco-sa-ise-rce-4fverepv)
→ No new info (linked only)
Tier A
Cisco Security5d ago
Cisco Identity Services Engine Remote Code Execution Vulnerabilities
→ No new info (linked only)
CVSS 3.19.9 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
CWECWE-22
PublishedApr 15, 2026
Last enriched5d ago
Trending Score64
Source articles7
Independent7
Info Completeness8/14
Missing: epss, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-20147EXP
Cisco Identity Services Engine Remote Code Execution Vulnerability
Trending: 87
CRITICALCVE-2026-20184
Cisco Webex Meetings Certificate Validation Vulnerability
Trending: 81
CRITICALCVE-2026-20186
Cisco Identity Services Engine Multiple Authenticated Remote Code Execution Vulnerability
Trending: 64
MEDIUMCVE-2026-20148EXP
Cisco Identity Services Engine Path Traversal Vulnerability
Trending: 35
MEDIUMCVE-2026-20132EXP
Cisco Identity Services Engine Multiple Cross-Site Scripting Vulnerabilities
Trending: 33

Pin to Dashboard

Verification

State: verified
Confidence: 0%

Vulnerability Timeline

CVE Published
Apr 15, 2026
Discovered by ZDM
Apr 15, 2026