Cisco ISE Passive Identity Connector

27 known vulnerabilities in Cisco ISE Passive Identity Connector, 10 critical, 2 actively exploited, with patch priority, exploit likelihood and the news…

Recently exploited

  • CVE-2026-76460 CVSS 10.0 critical · actively exploited Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
  • CVE-2025-20337 CVSS 10.0 critical · actively exploited Cisco Identity Services Engine Injection Vulnerability

Latest vulnerabilities

  • CVE-2026-76460 CVSS 10.0 critical · actively exploited Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
  • CVE-2026-76451 CVSS 4.9 medium A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated…
  • CVE-2026-76450 CVSS 4.9 medium A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated…
  • CVE-2026-76449 CVSS 4.9 medium A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated…
  • CVE-2026-76448 CVSS 4.9 medium A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated…
  • CVE-2026-76447 CVSS 5.3 medium A vulnerability in the Online Certificate Status Protocol (OCSP) responder of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated…
  • CVE-2026-76446 CVSS 4.9 medium A vulnerability in an API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to read specific files on the…
  • CVE-2026-76444 CVSS 5.3 medium A vulnerability in an internal service of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to retrieve…
  • CVE-2026-76439 CVSS 5.3 medium A vulnerability in the endpoint posture status reporting functionality of the guest portal web application of Cisco ISE could allow an…
  • CVE-2026-76434 CVSS 4.9 medium A vulnerability in the certificate import functionality of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow…
  • CVE-2026-76433 CVSS 5.3 medium A vulnerability in the client provisioning download feature of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker…
  • CVE-2026-76432 CVSS 4.9 medium A vulnerability in the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker with…
  • CVE-2026-76431 CVSS 4.9 medium A vulnerability in the file management function of the web-based management interface of Cisco ISE and Cisco ISE-PIC could allow an…
  • CVE-2026-76428 CVSS 4.9 medium A vulnerability in the REST APIs of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct SQL injection…
  • CVE-2026-76427 CVSS 4.9 medium A vulnerability in the offline profiler feed service of Cisco ISE could allow an authenticated, remote attacker to read arbitrary files…
  • CVE-2026-76426 CVSS 4.9 medium A vulnerability in the REST API of Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to conduct SQL injection…
  • CVE-2026-20287 CVSS 6.5 medium As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE…
  • CVE-2026-20285 CVSS 4.3 medium A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector…
  • CVE-2026-76423 CVSS 10.0 critical A vulnerability in the REST API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to gain administrative…
  • CVE-2026-20237 CVSS 9.1 critical As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE…
  • CVE-2026-20194 CVSS 9.1 critical As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE…
  • CVE-2026-20192 CVSS 10.0 critical As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE…
  • CVE-2026-20130 CVSS 10.0 critical As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE…
  • CVE-2026-20306 CVSS 9.1 critical A vulnerability in the REST API of Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to perform command injection…
  • CVE-2026-20305 CVSS 9.1 critical A vulnerability in the diagnostic tools of Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to perform command…
  • CVE-2026-20234 CVSS 9.9 critical As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE…
  • CVE-2025-20337 CVSS 10.0 critical · actively exploited Cisco Identity Services Engine Injection Vulnerability