CISCO-SA-ISE-MULT-VUL-YMSSTLCC
Vulnerability from csaf_cisco - Published: 2026-09-16 16:00 - Updated: 2026-09-16 16:00Summary
Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities
Notes
Summary: Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct SQL injections, modify data, or execute arbitrary commands on the underlying operating system on an affected device.
For more information about these vulnerabilities, see the Details ["#details"] section of this advisory.
Note: For CVE-2026-20282 and CVE-2026-20283, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the scores indicate. The reason is that it is easy to get to root from the achieved privilege level.
Cisco has released software updates that address these vulnerabilities. There are workarounds that address one of these vulnerabilities.
This advisory is part of a group of advisories. For a complete list of the advisories and links to them, see Cisco Advance Notification for Publication of September 16, 2026, Security Advisories ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-jfxK98ZP"]. In addition, for further documentation of improvements and fixes in Cisco Identity Services Engine, see Cisco Identity Services Engine Security Hardening Release: September 2026 ["https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-ise-XU5EwX5T"].
Vulnerable Products: CVE-2026-20284: This vulnerability affects Cisco ISE if the SXP service is enabled and at least one SXP connection is configured.
CVE-2026-20283: This vulnerability affects Cisco ISE if there is more than one network interface and at least one of them is configured as an active IPsec tunnel between Cisco ISE and a physical Network Access Device (NAD).
CVE-2026-20282: This vulnerability affects Cisco ISE, regardless of device configuration.
For information about which Cisco software releases are vulnerable, see the Fixed Software ["#fs"] section of this advisory.
Determine the SXP Configuration
To determine whether the SXP service is enabled, do the following:
Choose Administration > System > Deployment > Deployment.
Click the node to check.
From the Policy Service section, look at the Enable SXP Service setting.
If the service is enabled, the node has a vulnerable configuration.
Note: Each node must be checked.
To determine whether an SXP connection is configured, check for devices by choosing Work Centers > TrustSec > SXP > SXP Devices.
If devices are listed, the node has a vulnerable configuration.
If no devices are listed, the node does not have a vulnerable configuration.
Determine the IPsec Tunnel Configuration
To determine whether an IPsec tunnel is configured, check for entries by choosing Administration > System > Settings > Protocols > IPsec > Native IPsec.
If there are no entries, the device does not have a vulnerable configuration.
If there are entries, review the NAD IP address.
If only an IP address or fully qualified domain name (FQDN) is configured, the device does not have a vulnerable configuration.
If anything else is present in the field, the device has a vulnerable configuration.
If the Configure VTI box is checked, review the Remote and Local Tunnel IP address.
If only an IP address or FQDN is configured, the device does not have a vulnerable configuration.
If anything else is present in the field, the device has a vulnerable configuration.
Products Confirmed Not Vulnerable: Only products listed in the Vulnerable Products ["#vp"] section of this advisory are known to be affected by these vulnerabilities.
Cisco has confirmed that these vulnerabilities do not affect Cisco ISE Passive Identity Connector (ISE-PIC).
Details: The vulnerabilities are not dependent on one another. Exploitation of one of the vulnerabilities is not required to exploit another vulnerability. In addition, a software release that is affected by one of the vulnerabilities may not be affected by the other vulnerabilities.
Details about the vulnerabilities are as follows:
CVE-2026-20284: Cisco ISE SXP REST API SQL Injection Vulnerability
A vulnerability in the SXP REST API of Cisco ISE could allow an authenticated, remote attacker to conduct SQL injection attacks.
This vulnerability is due to insufficient validation of user-supplied input in REST API calls. An attacker could exploit this vulnerability by sending crafted input to an affected device. A successful exploit could allow the attacker to view or modify data on the underlying database for the affected device. In single-node deployments, successful exploitation of this vulnerability could cause the affected ISE node to become unavailable, resulting in a DoS condition. In that condition, endpoints that have not already authenticated would be unable to access the network until the node is restored.
To exploit this vulnerability, the attacker must have valid administrative credentials, have the SXP service enabled, and have at least one SXP connection configured.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
Bug ID(s): CSCwu66592 ["https://cdetsng.cisco.com/summary/#/defect/CSCwu66592"]
CVE ID: CVE-2026-20284
Security Impact Rating (SIR): Critical
CVSS Base Score: 9.1
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVE-2026-20283: Cisco ISE IPsec Open API Command Injection Vulnerability
A vulnerability in the IPsec Open API endpoint of Cisco ISE could allow an authenticated, remote attacker to inject arbitrary commands on the underlying operating system.
This vulnerability is due to insufficient validation of user-supplied input in IPsec Open API calls. An attacker could exploit this vulnerability by sending crafted input to the IPsec Open API endpoint on an affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system.
To exploit this vulnerability, the attacker must have valid administrative credentials and the node must have more than one network interface, one of which must be configured as an active IPsec tunnel.
Note: For CVE-2026-20283, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that it is easy to get to root from the achieved privilege level.
Cisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability.
Bug ID(s): CSCwu31070 ["https://cdetsng.cisco.com/summary/#/defect/CSCwu31070"]
CVE ID: CVE-2026-20283
Security Impact Rating (SIR): High
CVSS Base Score: 6.5
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
CVE-2026-20282: Cisco ISE Authenticated Write Vulnerability
A vulnerability in Cisco ISE could allow an authenticated, remote attacker to obtain write access on the underlying operating system of an affected device.
This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain write access to the underlying operating system.
To exploit this vulnerability, the attacker must have valid administrative credentials.
Note: For CVE-2026-20282, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that it is easy to get to root from the achieved privilege level.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
Bug ID(s): CSCwu40000 ["https://cdetsng.cisco.com/summary/#/defect/CSCwu40000"]
CVE ID: CVE-2026-20282
Security Impact Rating (SIR): High
CVSS Base Score: 4.9
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Workarounds: CVE-2026-20282 and CVE-2026-20284: There are no workarounds that address these vulnerabilities.
CVE-2026-20283: There is a workaround that addresses this vulnerability. The vulnerability is present only when an IPsec VTI tunnel is created using the API. However, using the Cisco ISE web interface to create an IPsec VTI tunnel does not allow the vulnerability to be configured.
If a vulnerable configuration is present, do the following:
Return to Administration > System > Settings > Protocols > IPsec > Native IPsec.
Choose the tunnel with the vulnerable configuration and remove it.
Add the tunnel back using the web interface.
While this workaround has been deployed and was proven successful in a test environment, customers should determine the applicability and effectiveness in their own environment and under their own use conditions. Customers should be aware that any workaround or mitigation that is implemented may negatively impact the functionality or performance of their network based on intrinsic customer deployment scenarios and limitations. Customers should not deploy any workarounds or mitigations before first evaluating the applicability to their own environment and any impact to such environment.
Fixed Software: Cisco considers any workarounds and mitigations (if applicable) to be temporary solutions until an upgrade to a fixed software release is available. To remediate these vulnerabilities and avoid future exposure as described in this advisory, Cisco strongly recommends that customers upgrade to the fixed software indicated in this advisory.
Fixed Releases
In the following table, the left column lists Cisco software releases. The remaining columns indicate whether a release is affected by the vulnerabilities that are described in this advisory and the first release that includes the fix for these vulnerabilities. Customers are advised to upgrade to an appropriate fixed software release ["https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes"] as indicated in this section.
Cisco ISE Release First Fixed Release
for CVE-2026-20284 First Fixed Release
for CVE-2026-20283 First Fixed Release
for CVE-2026-20282 3.1 and earlier 3.1 Patch 12 Not vulnerable. Migrate to a fixed release. 3.2 3.2 Patch 11 Not vulnerable. Migrate to a fixed release. 3.3 3.3 Patch 12 3.3 Patch 12 3.3 Patch 12 3.4 3.4 Patch 7 3.4 Patch 7 3.4 Patch 7 3.5 3.5 Patch 4 3.5 Patch 4 3.5 Patch 4
For instructions on upgrading a device, see the Upgrade Guides on the Cisco Identity Service Engine ["https://www.cisco.com/c/en/us/support/security/identity-services-engine/series.html"] support page.
The Cisco Product Security Incident Response Team (PSIRT) validates only the affected and fixed release information that is documented in this advisory.
Vulnerability Policy: To learn about Cisco security vulnerability disclosure policies and publications, see the Security Vulnerability Policy ["http://www.cisco.com/web/about/security/psirt/security_vulnerability_policy.html"]. This document also contains instructions for obtaining fixed software and receiving security vulnerability information from Cisco.
For additional information on Cisco's vulnerability management, disclosure cadence, and software patching strategy, see Cisco's Transition to a Risk-Based Vulnerability Disclosure Model ["https://sec.cloudapps.cisco.com/security/center/resources/risk-based-disclosure"].
Exploitation and Public Announcements: The Cisco PSIRT is aware that a public announcement is available for the vulnerabilities that are described in this advisory.
The Cisco PSIRT is not aware of any malicious use of the vulnerabilities that are described in this advisory.
Source: Cisco would like to thank Li Jiantao and Tevel Sho of STAR Labs SG Pte. Ltd for reporting these vulnerabilities.
Legal Disclaimer: SOFTWARE DOWNLOADS AND TECHNICAL SUPPORT
The Cisco Support and Downloads ["https://www.cisco.com/c/en/us/support/index.html"] page on Cisco.com provides information about licensing and downloads. This page can also display customer device support coverage for customers who use the My Devices tool. Please note that customers may download only software that was procured from Cisco directly or through a Cisco authorized reseller or partner and for which the license is still valid.
Customers who purchase directly from Cisco but do not hold a Cisco service contract and customers who make purchases through third-party vendors but are unsuccessful in obtaining fixed software through their point of sale should obtain upgrades by contacting the Cisco Technical Assistance Center (TAC) ["https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html"]. Customers should have the product serial number available and be prepared to provide the URL of this advisory as evidence of entitlement to a free upgrade.
When considering software upgrades ["https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes"], customers are advised to regularly consult the advisories ["https://www.cisco.com/go/psirt"] for the relevant Cisco products to determine exposure and a complete upgrade solution. In all cases, customers should ensure that the devices to be upgraded contain sufficient memory and confirm that current hardware and software configurations will continue to be supported properly by the new release. If the information is not clear, customers are advised to contact the Cisco Technical Assistance Center (TAC) ["https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html"] or their contracted maintenance providers.
LEGAL DISCLAIMER DETAILS
CISCO DOES NOT MAKE ANY EXPRESS OR IMPLIED GUARANTEES OR WARRANTIES OF ANY KIND, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. WITHOUT LIMITING THE GENERALITY OF THE FOREGOING, CISCO DOES NOT GUARANTEE THE ACCURACY OR COMPLETENESS OF THIS INFORMATION. THIS DOCUMENT IS PROVIDED ON AN "AS IS" BASIS. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. CISCO RESERVES THE RIGHT TO CHANGE OR UPDATE THIS DOCUMENT AT ANY TIME.
Copies or summaries of the information contained in this Security Advisory may lack important information or contain factual errors. Customers are advised to visit the Cisco Security Advisories ["https://www.cisco.com/go/psirt"] page for the most recent version of this Security Advisory. The Cisco Product Security Incident Response Team (PSIRT) assesses only the affected and fixed release information that is documented in this advisory. See the Cisco Security Vulnerability Policy ["https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes"] for more information.
4.9 (Medium)
Affected products
Known affected
49 products
| Product | Identifier | Version | Remediation |
|---|---|---|---|
| Unresolved product id: CSAFPID-111903 | — |
Vendor Fix
fix
Workaround
|
|
|
3.1.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 11
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p11
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 11
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p12
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
6.5 (Medium)
Affected products
Known affected
24 products
| Product | Identifier | Version | Remediation |
|---|---|---|---|
| Unresolved product id: CSAFPID-111903 | — |
Vendor Fix
fix
Workaround
|
|
|
3.3.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 11
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
9.1 (Critical)
Affected products
Known affected
47 products
| Product | Identifier | Version | Remediation |
|---|---|---|---|
| Unresolved product id: CSAFPID-111903 | — |
Vendor Fix
fix
Workaround
|
|
|
3.1.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2.0 p7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 7
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5.0
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 8
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 4
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 1
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 9
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 5
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 2
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.5 Patch 3
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.3 Patch 11
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.1.0 p11
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.2 Patch 10
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
|
|
3.4 Patch 6
Cisco / Cisco Identity Services Engine Software
|
— |
Vendor Fix
fix
Workaround
|
References
14 references
Acknowledgments
{
"document": {
"acknowledgments": [
{
"summary": "Cisco would like to thank Li Jiantao and Tevel Sho of STAR Labs SG Pte. Ltd for reporting these vulnerabilities."
}
],
"category": "csaf_security_advisory",
"csaf_version": "2.0",
"notes": [
{
"category": "summary",
"text": "Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct SQL injections, modify data, or execute arbitrary commands on the underlying operating system on an affected device.\r\n\r\nFor more information about these vulnerabilities, see the Details [\"#details\"] section of this advisory.\r\n\r\nNote: For CVE-2026-20282 and CVE-2026-20283, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the scores indicate. The reason is that it is easy to get to root from the achieved privilege level.\r\n\r\nCisco has released software updates that address these vulnerabilities. There are workarounds that address one of these vulnerabilities.\r\n\r\n\r\n\r\nThis advisory is part of a group of advisories. For a complete list of the advisories and links to them, see Cisco Advance Notification for Publication of September 16, 2026, Security Advisories [\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-jfxK98ZP\"]. In addition, for further documentation of improvements and fixes in Cisco Identity Services Engine, see Cisco Identity Services Engine Security Hardening Release: September 2026 [\"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-ise-XU5EwX5T\"].",
"title": "Summary"
},
{
"category": "general",
"text": "CVE-2026-20284: This vulnerability affects Cisco ISE if the SXP service is enabled and at least one SXP connection is configured.\r\n\r\nCVE-2026-20283: This vulnerability affects Cisco ISE if there is more than one network interface and at least one of them is configured as an active IPsec tunnel between Cisco ISE and a physical Network Access Device (NAD).\r\n\r\nCVE-2026-20282: This vulnerability affects Cisco ISE, regardless of device configuration.\r\n\r\nFor information about which Cisco software releases are vulnerable, see the Fixed Software [\"#fs\"] section of this advisory.\r\n\r\nDetermine the SXP Configuration\r\n\r\nTo determine whether the SXP service is enabled, do the following:\r\n\r\nChoose Administration \u003e System \u003e Deployment \u003e Deployment.\r\nClick the node to check.\r\nFrom the Policy Service section, look at the Enable SXP Service setting.\r\n\r\nIf the service is enabled, the node has a vulnerable configuration.\r\n\r\nNote: Each node must be checked.\r\n\r\nTo determine whether an SXP connection is configured, check for devices by choosing Work Centers \u003e TrustSec \u003e SXP \u003e SXP Devices.\r\n\r\nIf devices are listed, the node has a vulnerable configuration.\r\nIf no devices are listed, the node does not have a vulnerable configuration.\r\n\r\nDetermine the IPsec Tunnel Configuration\r\n\r\nTo determine whether an IPsec tunnel is configured, check for entries by choosing Administration \u003e System \u003e Settings \u003e Protocols \u003e IPsec \u003e Native IPsec.\r\n\r\nIf there are no entries, the device does not have a vulnerable configuration.\r\n\r\nIf there are entries, review the NAD IP address.\r\n\r\nIf only an IP address or fully qualified domain name (FQDN) is configured, the device does not have a vulnerable configuration.\r\nIf anything else is present in the field, the device has a vulnerable configuration.\r\n\r\nIf the Configure VTI box is checked, review the Remote and Local Tunnel IP address.\r\n\r\nIf only an IP address or FQDN is configured, the device does not have a vulnerable configuration.\r\nIf anything else is present in the field, the device has a vulnerable configuration.",
"title": "Vulnerable Products"
},
{
"category": "general",
"text": "Only products listed in the Vulnerable Products [\"#vp\"] section of this advisory are known to be affected by these vulnerabilities.\r\n\r\nCisco has confirmed that these vulnerabilities do not affect Cisco ISE Passive Identity Connector (ISE-PIC).",
"title": "Products Confirmed Not Vulnerable"
},
{
"category": "general",
"text": "The vulnerabilities are not dependent on one another. Exploitation of one of the vulnerabilities is not required to exploit another vulnerability. In addition, a software release that is affected by one of the vulnerabilities may not be affected by the other vulnerabilities.\r\n\r\nDetails about the vulnerabilities are as follows:\r\n\r\nCVE-2026-20284: Cisco ISE SXP REST API SQL Injection Vulnerability\r\n\r\nA vulnerability in the SXP REST API of Cisco ISE could allow an authenticated, remote attacker to conduct SQL injection attacks.\r\n\r\nThis vulnerability is due to insufficient validation of user-supplied input in REST API calls. An attacker could exploit this vulnerability by sending crafted input to an affected device. A successful exploit could allow the attacker to view or modify data on the underlying database for the affected device. In single-node deployments, successful exploitation of this vulnerability could cause the affected ISE node to become unavailable, resulting in a DoS condition. In that condition, endpoints that have not already authenticated would be unable to access the network until the node is restored.\r\n\r\nTo exploit this vulnerability, the attacker must have valid administrative credentials, have the SXP service enabled, and have at least one SXP connection configured.\r\n\r\nCisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.\r\n\r\nBug ID(s): CSCwu66592 [\"https://cdetsng.cisco.com/summary/#/defect/CSCwu66592\"]\r\nCVE ID: CVE-2026-20284\r\nSecurity Impact Rating (SIR): Critical\r\nCVSS Base Score: 9.1\r\nCVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H\r\n\r\nCVE-2026-20283: Cisco ISE IPsec Open API Command Injection Vulnerability\r\n\r\nA vulnerability in the IPsec Open API endpoint of Cisco ISE could allow an authenticated, remote attacker to inject arbitrary commands on the underlying operating system.\r\n\r\nThis vulnerability is due to insufficient validation of user-supplied input in IPsec Open API calls. An attacker could exploit this vulnerability by sending crafted input to the IPsec Open API endpoint on an affected device. A successful exploit could allow the attacker to execute arbitrary commands on the underlying operating system.\r\n\r\nTo exploit this vulnerability, the attacker must have valid administrative credentials and the node must have more than one network interface, one of which must be configured as an active IPsec tunnel.\r\n\r\nNote: For CVE-2026-20283, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that it is easy to get to root from the achieved privilege level.\r\n\r\nCisco has released software updates that address this vulnerability. There are workarounds that address this vulnerability.\r\n\r\nBug ID(s): CSCwu31070 [\"https://cdetsng.cisco.com/summary/#/defect/CSCwu31070\"]\r\nCVE ID: CVE-2026-20283\r\nSecurity Impact Rating (SIR): High\r\nCVSS Base Score: 6.5\r\nCVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N\r\n\r\nCVE-2026-20282: Cisco ISE Authenticated Write Vulnerability\r\n\r\nA vulnerability in Cisco ISE could allow an authenticated, remote attacker to obtain write access on the underlying operating system of an affected device.\r\n\r\nThis vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to obtain write access to the underlying operating system.\r\n\r\nTo exploit this vulnerability, the attacker must have valid administrative credentials.\r\n\r\nNote: For CVE-2026-20282, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that it is easy to get to root from the achieved privilege level.\r\n\r\nCisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.\r\n\r\nBug ID(s): CSCwu40000 [\"https://cdetsng.cisco.com/summary/#/defect/CSCwu40000\"]\r\nCVE ID: CVE-2026-20282\r\nSecurity Impact Rating (SIR): High\r\nCVSS Base Score: 4.9\r\nCVSS Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N",
"title": "Details"
},
{
"category": "general",
"text": "CVE-2026-20282 and CVE-2026-20284: There are no workarounds that address these vulnerabilities.\r\n\r\nCVE-2026-20283: There is a workaround that addresses this vulnerability. The vulnerability is present only when an IPsec VTI tunnel is created using the API. However, using the Cisco ISE web interface to create an IPsec VTI tunnel does not allow the vulnerability to be configured.\r\n\r\nIf a vulnerable configuration is present, do the following:\r\n\r\nReturn to Administration \u003e System \u003e Settings \u003e Protocols \u003e IPsec \u003e Native IPsec.\r\nChoose the tunnel with the vulnerable configuration and remove it.\r\nAdd the tunnel back using the web interface.\r\n\r\nWhile this workaround has been deployed and was proven successful in a test environment, customers should determine the applicability and effectiveness in their own environment and under their own use conditions. Customers should be aware that any workaround or mitigation that is implemented may negatively impact the functionality or performance of their network based on intrinsic customer deployment scenarios and limitations. Customers should not deploy any workarounds or mitigations before first evaluating the applicability to their own environment and any impact to such environment.",
"title": "Workarounds"
},
{
"category": "general",
"text": "Cisco considers any workarounds and mitigations (if applicable) to be temporary solutions until an upgrade to a fixed software release is available. To remediate these vulnerabilities and avoid future exposure as described in this advisory, Cisco strongly recommends that customers upgrade to the fixed software indicated in this advisory.\r\n Fixed Releases\r\nIn the following table, the left column lists Cisco software releases. The remaining columns indicate whether a release is affected by the vulnerabilities that are described in this advisory and the first release that includes the fix for these vulnerabilities. Customers are advised to upgrade to an appropriate fixed software release [\"https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes\"] as indicated in this section.\r\n Cisco ISE Release First Fixed Release\r\nfor CVE-2026-20284 First Fixed Release\r\nfor CVE-2026-20283 First Fixed Release\r\nfor CVE-2026-20282 3.1 and earlier 3.1 Patch 12 Not vulnerable. Migrate to a fixed release. 3.2 3.2 Patch 11 Not vulnerable. Migrate to a fixed release. 3.3 3.3 Patch 12 3.3 Patch 12 3.3 Patch 12 3.4 3.4 Patch 7 3.4 Patch 7 3.4 Patch 7 3.5 3.5 Patch 4 3.5 Patch 4 3.5 Patch 4\r\nFor instructions on upgrading a device, see the Upgrade Guides on the Cisco Identity Service Engine [\"https://www.cisco.com/c/en/us/support/security/identity-services-engine/series.html\"] support page.\r\n\r\nThe Cisco Product Security Incident Response Team (PSIRT) validates only the affected and fixed release information that is documented in this advisory.",
"title": "Fixed Software"
},
{
"category": "general",
"text": "To learn about Cisco security vulnerability disclosure policies and publications, see the Security Vulnerability Policy [\"http://www.cisco.com/web/about/security/psirt/security_vulnerability_policy.html\"]. This document also contains instructions for obtaining fixed software and receiving security vulnerability information from Cisco.\r\n\r\nFor additional information on Cisco\u0027s vulnerability management, disclosure cadence, and software patching strategy, see Cisco\u0027s Transition to a Risk-Based Vulnerability Disclosure Model [\"https://sec.cloudapps.cisco.com/security/center/resources/risk-based-disclosure\"].",
"title": "Vulnerability Policy"
},
{
"category": "general",
"text": "The Cisco PSIRT is aware that a public announcement is available for the vulnerabilities that are described in this advisory.\r\n\r\nThe Cisco PSIRT is not aware of any malicious use of the vulnerabilities that are described in this advisory.",
"title": "Exploitation and Public Announcements"
},
{
"category": "general",
"text": "Cisco would like to thank Li Jiantao and Tevel Sho of STAR Labs SG Pte. Ltd for reporting these vulnerabilities.",
"title": "Source"
},
{
"category": "legal_disclaimer",
"text": "SOFTWARE DOWNLOADS AND TECHNICAL SUPPORT\r\n\r\nThe Cisco Support and Downloads [\"https://www.cisco.com/c/en/us/support/index.html\"] page on Cisco.com provides information about licensing and downloads. This page can also display customer device support coverage for customers who use the My Devices tool. Please note that customers may download only software that was procured from Cisco directly or through a Cisco authorized reseller or partner and for which the license is still valid.\r\n\r\nCustomers who purchase directly from Cisco but do not hold a Cisco service contract and customers who make purchases through third-party vendors but are unsuccessful in obtaining fixed software through their point of sale should obtain upgrades by contacting the Cisco Technical Assistance Center (TAC) [\"https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html\"]. Customers should have the product serial number available and be prepared to provide the URL of this advisory as evidence of entitlement to a free upgrade.\r\n\r\nWhen considering software upgrades [\"https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes\"], customers are advised to regularly consult the advisories [\"https://www.cisco.com/go/psirt\"] for the relevant Cisco products to determine exposure and a complete upgrade solution. In all cases, customers should ensure that the devices to be upgraded contain sufficient memory and confirm that current hardware and software configurations will continue to be supported properly by the new release. If the information is not clear, customers are advised to contact the Cisco Technical Assistance Center (TAC) [\"https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html\"] or their contracted maintenance providers.\r\nLEGAL DISCLAIMER DETAILS\r\n\r\nCISCO DOES NOT MAKE ANY EXPRESS OR IMPLIED GUARANTEES OR WARRANTIES OF ANY KIND, INCLUDING THE WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR USE. WITHOUT LIMITING THE GENERALITY OF THE FOREGOING, CISCO DOES NOT GUARANTEE THE ACCURACY OR COMPLETENESS OF THIS INFORMATION. THIS DOCUMENT IS PROVIDED ON AN \"AS IS\" BASIS. YOUR USE OF THE INFORMATION ON THE DOCUMENT OR MATERIALS LINKED FROM THE DOCUMENT IS AT YOUR OWN RISK. CISCO RESERVES THE RIGHT TO CHANGE OR UPDATE THIS DOCUMENT AT ANY TIME.\r\n\r\nCopies or summaries of the information contained in this Security Advisory may lack important information or contain factual errors. Customers are advised to visit the Cisco Security Advisories [\"https://www.cisco.com/go/psirt\"] page for the most recent version of this Security Advisory. The Cisco Product Security Incident Response Team (PSIRT) assesses only the affected and fixed release information that is documented in this advisory. See the Cisco Security Vulnerability Policy [\"https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes\"] for more information.",
"title": "Legal Disclaimer"
}
],
"publisher": {
"category": "vendor",
"contact_details": "psirt@cisco.com",
"issuing_authority": "Cisco PSIRT",
"name": "Cisco",
"namespace": "https://wwww.cisco.com"
},
"references": [
{
"category": "self",
"summary": "Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities",
"url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-mult-vul-ymSsTLCc"
},
{
"category": "external",
"summary": "Cisco Security Vulnerability Policy",
"url": "https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html"
},
{
"category": "external",
"summary": "Cisco Advance Notification for Publication of September 16, 2026, Security Advisories",
"url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-notice-jfxK98ZP"
},
{
"category": "external",
"summary": "Cisco Identity Services Engine Security Hardening Release: September 2026",
"url": "https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-ise-XU5EwX5T"
},
{
"category": "external",
"summary": "CSCwu66592\u0026nbsp;",
"url": "https://cdetsng.cisco.com/summary/#/defect/CSCwu66592"
},
{
"category": "external",
"summary": "CSCwu31070",
"url": "https://cdetsng.cisco.com/summary/#/defect/CSCwu31070"
},
{
"category": "external",
"summary": "CSCwu40000",
"url": "https://cdetsng.cisco.com/summary/#/defect/CSCwu40000"
},
{
"category": "external",
"summary": "fixed software release",
"url": "https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html#fixes"
},
{
"category": "external",
"summary": "Cisco Identity Service Engine",
"url": "https://www.cisco.com/c/en/us/support/security/identity-services-engine/series.html"
},
{
"category": "external",
"summary": "Security Vulnerability Policy",
"url": "http://www.cisco.com/web/about/security/psirt/security_vulnerability_policy.html"
},
{
"category": "external",
"summary": "Cisco\u0027s Transition to a Risk-Based Vulnerability Disclosure Model",
"url": "https://sec.cloudapps.cisco.com/security/center/resources/risk-based-disclosure"
},
{
"category": "external",
"summary": "Cisco Support and Downloads",
"url": "https://www.cisco.com/c/en/us/support/index.html"
},
{
"category": "external",
"summary": "Cisco Technical Assistance Center (TAC)",
"url": "https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html"
},
{
"category": "external",
"summary": "the advisories",
"url": "https://www.cisco.com/go/psirt"
}
],
"title": "Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities",
"tracking": {
"current_release_date": "2026-09-16T16:00:00+00:00",
"generator": {
"date": "2026-09-16T16:03:50+00:00",
"engine": {
"name": "TVCE"
}
},
"id": "cisco-sa-ise-mult-vul-ymSsTLCc",
"initial_release_date": "2026-09-16T16:00:00+00:00",
"revision_history": [
{
"date": "2026-09-16T16:03:10+00:00",
"number": "1.0.0",
"summary": "Initial public release."
}
],
"status": "final",
"version": "1.0.0"
}
},
"product_tree": {
"branches": [
{
"branches": [
{
"branches": [
{
"branches": [
{
"category": "service_pack",
"name": "3.1.0",
"product": {
"name": "3.1.0",
"product_id": "CSAFPID-284330"
}
},
{
"category": "service_pack",
"name": "3.1.0 p1",
"product": {
"name": "3.1.0 p1",
"product_id": "CSAFPID-286349"
}
},
{
"category": "service_pack",
"name": "3.1.0 p3",
"product": {
"name": "3.1.0 p3",
"product_id": "CSAFPID-286928"
}
},
{
"category": "service_pack",
"name": "3.1.0 p2",
"product": {
"name": "3.1.0 p2",
"product_id": "CSAFPID-286939"
}
},
{
"category": "service_pack",
"name": "3.1.0 p4",
"product": {
"name": "3.1.0 p4",
"product_id": "CSAFPID-290540"
}
},
{
"category": "service_pack",
"name": "3.1.0 p5",
"product": {
"name": "3.1.0 p5",
"product_id": "CSAFPID-292629"
}
},
{
"category": "service_pack",
"name": "3.1.0 p6",
"product": {
"name": "3.1.0 p6",
"product_id": "CSAFPID-295313"
}
},
{
"category": "service_pack",
"name": "3.1.0 p7",
"product": {
"name": "3.1.0 p7",
"product_id": "CSAFPID-299948"
}
},
{
"category": "service_pack",
"name": "3.1.0 p8",
"product": {
"name": "3.1.0 p8",
"product_id": "CSAFPID-301107"
}
},
{
"category": "service_pack",
"name": "3.1.0 p9",
"product": {
"name": "3.1.0 p9",
"product_id": "CSAFPID-301743"
}
},
{
"category": "service_pack",
"name": "3.1.0 p10",
"product": {
"name": "3.1.0 p10",
"product_id": "CSAFPID-303301"
}
},
{
"category": "service_pack",
"name": "3.1.0 p11",
"product": {
"name": "3.1.0 p11",
"product_id": "CSAFPID-308530"
}
},
{
"category": "service_pack",
"name": "3.1.0 p12",
"product": {
"name": "3.1.0 p12",
"product_id": "CSAFPID-309194"
}
}
],
"category": "product_version",
"name": "3.1"
},
{
"branches": [
{
"category": "service_pack",
"name": "3.2.0",
"product": {
"name": "3.2.0",
"product_id": "CSAFPID-290542"
}
},
{
"category": "service_pack",
"name": "3.2.0 p1",
"product": {
"name": "3.2.0 p1",
"product_id": "CSAFPID-292670"
}
},
{
"category": "service_pack",
"name": "3.2.0 p2",
"product": {
"name": "3.2.0 p2",
"product_id": "CSAFPID-295423"
}
},
{
"category": "service_pack",
"name": "3.2.0 p3",
"product": {
"name": "3.2.0 p3",
"product_id": "CSAFPID-300260"
}
},
{
"category": "service_pack",
"name": "3.2.0 p4",
"product": {
"name": "3.2.0 p4",
"product_id": "CSAFPID-300852"
}
},
{
"category": "service_pack",
"name": "3.2.0 p5",
"product": {
"name": "3.2.0 p5",
"product_id": "CSAFPID-301471"
}
},
{
"category": "service_pack",
"name": "3.2.0 p6",
"product": {
"name": "3.2.0 p6",
"product_id": "CSAFPID-301744"
}
},
{
"category": "service_pack",
"name": "3.2.0 p7",
"product": {
"name": "3.2.0 p7",
"product_id": "CSAFPID-302991"
}
},
{
"category": "service_pack",
"name": "3.2 Patch 8",
"product": {
"name": "3.2 Patch 8",
"product_id": "CSAFPID-306842"
}
},
{
"category": "service_pack",
"name": "3.2 Patch 9",
"product": {
"name": "3.2 Patch 9",
"product_id": "CSAFPID-307060"
}
},
{
"category": "service_pack",
"name": "3.2 Patch 10",
"product": {
"name": "3.2 Patch 10",
"product_id": "CSAFPID-308531"
}
},
{
"category": "service_pack",
"name": "3.2 Patch 11",
"product": {
"name": "3.2 Patch 11",
"product_id": "CSAFPID-309193"
}
}
],
"category": "product_version",
"name": "3.2"
},
{
"branches": [
{
"category": "service_pack",
"name": "3.3.0",
"product": {
"name": "3.3.0",
"product_id": "CSAFPID-299950"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 2",
"product": {
"name": "3.3 Patch 2",
"product_id": "CSAFPID-302653"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 1",
"product": {
"name": "3.3 Patch 1",
"product_id": "CSAFPID-302654"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 3",
"product": {
"name": "3.3 Patch 3",
"product_id": "CSAFPID-302655"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 4",
"product": {
"name": "3.3 Patch 4",
"product_id": "CSAFPID-303023"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 5",
"product": {
"name": "3.3 Patch 5",
"product_id": "CSAFPID-303899"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 6",
"product": {
"name": "3.3 Patch 6",
"product_id": "CSAFPID-305299"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 7",
"product": {
"name": "3.3 Patch 7",
"product_id": "CSAFPID-306464"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 8",
"product": {
"name": "3.3 Patch 8",
"product_id": "CSAFPID-306843"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 9",
"product": {
"name": "3.3 Patch 9",
"product_id": "CSAFPID-306924"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 10",
"product": {
"name": "3.3 Patch 10",
"product_id": "CSAFPID-307183"
}
},
{
"category": "service_pack",
"name": "3.3 Patch 11",
"product": {
"name": "3.3 Patch 11",
"product_id": "CSAFPID-308420"
}
}
],
"category": "product_version",
"name": "3.3"
},
{
"branches": [
{
"category": "service_pack",
"name": "3.4.0",
"product": {
"name": "3.4.0",
"product_id": "CSAFPID-302760"
}
},
{
"category": "service_pack",
"name": "3.4 Patch 1",
"product": {
"name": "3.4 Patch 1",
"product_id": "CSAFPID-303199"
}
},
{
"category": "service_pack",
"name": "3.4 Patch 2",
"product": {
"name": "3.4 Patch 2",
"product_id": "CSAFPID-305360"
}
},
{
"category": "service_pack",
"name": "3.4 Patch 3",
"product": {
"name": "3.4 Patch 3",
"product_id": "CSAFPID-306583"
}
},
{
"category": "service_pack",
"name": "3.4 Patch 4",
"product": {
"name": "3.4 Patch 4",
"product_id": "CSAFPID-306844"
}
},
{
"category": "service_pack",
"name": "3.4 Patch 5",
"product": {
"name": "3.4 Patch 5",
"product_id": "CSAFPID-307182"
}
},
{
"category": "service_pack",
"name": "3.4 Patch 6",
"product": {
"name": "3.4 Patch 6",
"product_id": "CSAFPID-308532"
}
}
],
"category": "product_version",
"name": "3.4"
},
{
"branches": [
{
"category": "service_pack",
"name": "3.5.0",
"product": {
"name": "3.5.0",
"product_id": "CSAFPID-306647"
}
},
{
"category": "service_pack",
"name": "3.5 Patch 1",
"product": {
"name": "3.5 Patch 1",
"product_id": "CSAFPID-306925"
}
},
{
"category": "service_pack",
"name": "3.5 Patch 2",
"product": {
"name": "3.5 Patch 2",
"product_id": "CSAFPID-307184"
}
},
{
"category": "service_pack",
"name": "3.5 Patch 3",
"product": {
"name": "3.5 Patch 3",
"product_id": "CSAFPID-307185"
}
}
],
"category": "product_version",
"name": "3.5"
}
],
"category": "product_family",
"name": "Cisco Identity Services Engine Software"
},
{
"category": "product_name",
"name": "Cisco Identity Services Engine",
"product": {
"name": "Cisco Identity Services Engine",
"product_id": "CSAFPID-277469"
}
}
],
"category": "vendor",
"name": "Cisco"
}
],
"relationships": [
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-284330:277469"
},
"product_reference": "CSAFPID-284330",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p1 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-286349:277469"
},
"product_reference": "CSAFPID-286349",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p3 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-286928:277469"
},
"product_reference": "CSAFPID-286928",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p2 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-286939:277469"
},
"product_reference": "CSAFPID-286939",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p4 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-290540:277469"
},
"product_reference": "CSAFPID-290540",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p5 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-292629:277469"
},
"product_reference": "CSAFPID-292629",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p6 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-295313:277469"
},
"product_reference": "CSAFPID-295313",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p7 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-299948:277469"
},
"product_reference": "CSAFPID-299948",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p8 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-301107:277469"
},
"product_reference": "CSAFPID-301107",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p9 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-301743:277469"
},
"product_reference": "CSAFPID-301743",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p10 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-303301:277469"
},
"product_reference": "CSAFPID-303301",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p11 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-308530:277469"
},
"product_reference": "CSAFPID-308530",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.1.0 p12 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-309194:277469"
},
"product_reference": "CSAFPID-309194",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-290542:277469"
},
"product_reference": "CSAFPID-290542",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p1 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-292670:277469"
},
"product_reference": "CSAFPID-292670",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p2 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-295423:277469"
},
"product_reference": "CSAFPID-295423",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p3 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-300260:277469"
},
"product_reference": "CSAFPID-300260",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p4 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-300852:277469"
},
"product_reference": "CSAFPID-300852",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p5 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-301471:277469"
},
"product_reference": "CSAFPID-301471",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p6 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-301744:277469"
},
"product_reference": "CSAFPID-301744",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2.0 p7 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-302991:277469"
},
"product_reference": "CSAFPID-302991",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2 Patch 8 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306842:277469"
},
"product_reference": "CSAFPID-306842",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2 Patch 9 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-307060:277469"
},
"product_reference": "CSAFPID-307060",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2 Patch 10 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-308531:277469"
},
"product_reference": "CSAFPID-308531",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.2 Patch 11 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-309193:277469"
},
"product_reference": "CSAFPID-309193",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3.0 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-299950:277469"
},
"product_reference": "CSAFPID-299950",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 2 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-302653:277469"
},
"product_reference": "CSAFPID-302653",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 1 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-302654:277469"
},
"product_reference": "CSAFPID-302654",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 3 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-302655:277469"
},
"product_reference": "CSAFPID-302655",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 4 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-303023:277469"
},
"product_reference": "CSAFPID-303023",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 5 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-303899:277469"
},
"product_reference": "CSAFPID-303899",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 6 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-305299:277469"
},
"product_reference": "CSAFPID-305299",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 7 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306464:277469"
},
"product_reference": "CSAFPID-306464",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 8 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306843:277469"
},
"product_reference": "CSAFPID-306843",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 9 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306924:277469"
},
"product_reference": "CSAFPID-306924",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 10 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-307183:277469"
},
"product_reference": "CSAFPID-307183",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.3 Patch 11 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-308420:277469"
},
"product_reference": "CSAFPID-308420",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4.0 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-302760:277469"
},
"product_reference": "CSAFPID-302760",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4 Patch 1 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-303199:277469"
},
"product_reference": "CSAFPID-303199",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4 Patch 2 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-305360:277469"
},
"product_reference": "CSAFPID-305360",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4 Patch 3 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306583:277469"
},
"product_reference": "CSAFPID-306583",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4 Patch 4 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306844:277469"
},
"product_reference": "CSAFPID-306844",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4 Patch 5 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-307182:277469"
},
"product_reference": "CSAFPID-307182",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.4 Patch 6 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-308532:277469"
},
"product_reference": "CSAFPID-308532",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.5.0 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306647:277469"
},
"product_reference": "CSAFPID-306647",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.5 Patch 1 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-306925:277469"
},
"product_reference": "CSAFPID-306925",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.5 Patch 2 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-307184:277469"
},
"product_reference": "CSAFPID-307184",
"relates_to_product_reference": "CSAFPID-277469"
},
{
"category": "installed_on",
"full_product_name": {
"name": "Cisco Identity Services Engine Software 3.5 Patch 3 when installed on Cisco Identity Services Engine",
"product_id": "CSAFPID-307185:277469"
},
"product_reference": "CSAFPID-307185",
"relates_to_product_reference": "CSAFPID-277469"
}
]
},
"vulnerabilities": [
{
"cve": "CVE-2026-20282",
"ids": [
{
"system_name": "Cisco Bug ID",
"text": "CSCwu40000"
}
],
"notes": [
{
"category": "other",
"text": "Complete.",
"title": "Affected Product Comprehensiveness"
}
],
"product_status": {
"known_affected": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532",
"CSAFPID-309193",
"CSAFPID-309194"
]
},
"release_date": "2026-09-16T16:00:00+00:00",
"remediations": [
{
"category": "vendor_fix",
"details": "Cisco has released software updates that address this vulnerability.",
"product_ids": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532",
"CSAFPID-309193",
"CSAFPID-309194"
],
"url": "https://software.cisco.com"
},
{
"category": "workaround",
"details": "CVE-2026-20282 and CVE-2026-20284: There are no workarounds that address these vulnerabilities.\r\n\r\nCVE-2026-20283: There is a workaround that addresses this vulnerability. The vulnerability is present only when an IPsec VTI tunnel is created using the API. However, using the Cisco ISE web interface to create an IPsec VTI tunnel does not allow the vulnerability to be configured.\r\n\r\nIf a vulnerable configuration is present, do the following:\r\n\r\nReturn to Administration \u003e System \u003e Settings \u003e Protocols \u003e IPsec \u003e Native IPsec.\r\nChoose the tunnel with the vulnerable configuration and remove it.\r\nAdd the tunnel back using the web interface.\r\n\r\nWhile this workaround has been deployed and was proven successful in a test environment, customers should determine the applicability and effectiveness in their own environment and under their own use conditions. Customers should be aware that any workaround or mitigation that is implemented may negatively impact the functionality or performance of their network based on intrinsic customer deployment scenarios and limitations. Customers should not deploy any workarounds or mitigations before first evaluating the applicability to their own environment and any impact to such environment.",
"product_ids": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532",
"CSAFPID-309193",
"CSAFPID-309194"
]
}
],
"scores": [
{
"cvss_v3": {
"baseScore": 4.9,
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N",
"version": "3.1"
},
"products": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532",
"CSAFPID-309193",
"CSAFPID-309194"
]
}
],
"title": "Cisco Identity Services Engine Authenticated Remote Code Execution"
},
{
"cve": "CVE-2026-20283",
"ids": [
{
"system_name": "Cisco Bug ID",
"text": "CSCwu31070"
}
],
"notes": [
{
"category": "other",
"text": "Complete.",
"title": "Affected Product Comprehensiveness"
}
],
"product_status": {
"known_affected": [
"CSAFPID-111903",
"CSAFPID-299950",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308532"
]
},
"release_date": "2026-09-16T16:00:00+00:00",
"remediations": [
{
"category": "vendor_fix",
"details": "Cisco has released software updates that address this vulnerability.",
"product_ids": [
"CSAFPID-111903",
"CSAFPID-299950",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308532"
],
"url": "https://software.cisco.com"
},
{
"category": "workaround",
"details": "CVE-2026-20282 and CVE-2026-20284: There are no workarounds that address these vulnerabilities.\r\n\r\nCVE-2026-20283: There is a workaround that addresses this vulnerability. The vulnerability is present only when an IPsec VTI tunnel is created using the API. However, using the Cisco ISE web interface to create an IPsec VTI tunnel does not allow the vulnerability to be configured.\r\n\r\nIf a vulnerable configuration is present, do the following:\r\n\r\nReturn to Administration \u003e System \u003e Settings \u003e Protocols \u003e IPsec \u003e Native IPsec.\r\nChoose the tunnel with the vulnerable configuration and remove it.\r\nAdd the tunnel back using the web interface.\r\n\r\nWhile this workaround has been deployed and was proven successful in a test environment, customers should determine the applicability and effectiveness in their own environment and under their own use conditions. Customers should be aware that any workaround or mitigation that is implemented may negatively impact the functionality or performance of their network based on intrinsic customer deployment scenarios and limitations. Customers should not deploy any workarounds or mitigations before first evaluating the applicability to their own environment and any impact to such environment.",
"product_ids": [
"CSAFPID-111903",
"CSAFPID-299950",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308532"
]
}
],
"scores": [
{
"cvss_v3": {
"baseScore": 6.5,
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N",
"version": "3.1"
},
"products": [
"CSAFPID-111903",
"CSAFPID-299950",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308532"
]
}
],
"title": "Cisco Identity Services Engine IPSec Open API Command Injection Vulnerability"
},
{
"cve": "CVE-2026-20284",
"ids": [
{
"system_name": "Cisco Bug ID",
"text": "CSCwu66592"
}
],
"notes": [
{
"category": "other",
"text": "Complete.",
"title": "Affected Product Comprehensiveness"
}
],
"product_status": {
"known_affected": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532"
]
},
"release_date": "2026-09-16T16:00:00+00:00",
"remediations": [
{
"category": "vendor_fix",
"details": "Cisco has released software updates that address this vulnerability.",
"product_ids": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532"
],
"url": "https://software.cisco.com"
},
{
"category": "workaround",
"details": "CVE-2026-20282 and CVE-2026-20284: There are no workarounds that address these vulnerabilities.\r\n\r\nCVE-2026-20283: There is a workaround that addresses this vulnerability. The vulnerability is present only when an IPsec VTI tunnel is created using the API. However, using the Cisco ISE web interface to create an IPsec VTI tunnel does not allow the vulnerability to be configured.\r\n\r\nIf a vulnerable configuration is present, do the following:\r\n\r\nReturn to Administration \u003e System \u003e Settings \u003e Protocols \u003e IPsec \u003e Native IPsec.\r\nChoose the tunnel with the vulnerable configuration and remove it.\r\nAdd the tunnel back using the web interface.\r\n\r\nWhile this workaround has been deployed and was proven successful in a test environment, customers should determine the applicability and effectiveness in their own environment and under their own use conditions. Customers should be aware that any workaround or mitigation that is implemented may negatively impact the functionality or performance of their network based on intrinsic customer deployment scenarios and limitations. Customers should not deploy any workarounds or mitigations before first evaluating the applicability to their own environment and any impact to such environment.",
"product_ids": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532"
]
}
],
"scores": [
{
"cvss_v3": {
"baseScore": 9.1,
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H",
"version": "3.1"
},
"products": [
"CSAFPID-111903",
"CSAFPID-284330",
"CSAFPID-286349",
"CSAFPID-286928",
"CSAFPID-286939",
"CSAFPID-290540",
"CSAFPID-290542",
"CSAFPID-292629",
"CSAFPID-292670",
"CSAFPID-295313",
"CSAFPID-295423",
"CSAFPID-299948",
"CSAFPID-299950",
"CSAFPID-300260",
"CSAFPID-300852",
"CSAFPID-301107",
"CSAFPID-301471",
"CSAFPID-301743",
"CSAFPID-301744",
"CSAFPID-302653",
"CSAFPID-302654",
"CSAFPID-302655",
"CSAFPID-302760",
"CSAFPID-302991",
"CSAFPID-303023",
"CSAFPID-303199",
"CSAFPID-303301",
"CSAFPID-303899",
"CSAFPID-305299",
"CSAFPID-305360",
"CSAFPID-306464",
"CSAFPID-306583",
"CSAFPID-306647",
"CSAFPID-306842",
"CSAFPID-306843",
"CSAFPID-306844",
"CSAFPID-306924",
"CSAFPID-306925",
"CSAFPID-307060",
"CSAFPID-307182",
"CSAFPID-307183",
"CSAFPID-307184",
"CSAFPID-307185",
"CSAFPID-308420",
"CSAFPID-308530",
"CSAFPID-308531",
"CSAFPID-308532"
]
}
],
"title": "Cisco Identity Services Engine REST API SQL Injection Vulnerability"
}
]
}
Loading…
Loading…
Experimental. This forecast is provided for visualization only and may change without notice. Do not use it for operational decisions.
Forecast uses a logistic model when the trend is rising, or an exponential decay model when the trend is falling. Fitted via linearized least squares.
Sightings
| Author | Source | Type | Date | Other |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.
Loading…
Loading…
The MITRE ATT&CK techniques below are AI-generated suggestions, inferred from the description of the
vulnerability by the CIRCL/vulnerability-attack-technique-classification-roberta-base
model, served locally by ML-Gateway.
They have not been verified by an analyst and are provided for guidance only.
The approach is described in our paper Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion.
Browse all ATT&CK techniques and the vulnerabilities related to each.
The approach is described in our paper Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion.
Browse all ATT&CK techniques and the vulnerabilities related to each.
Loading…
Related by attack behaviour
Vulnerabilities whose description is nearest to this one in the vector space of the CIRCL/vulnerability-attack-technique-biencoder model. This is a similarity search over the bi-encoder space (plain cosine), not a classification, and it has no measured accuracy.
Loading…