CVE-2025-20286Disclosure(amazon / amazon_web_services)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability in Amazon Web Services (AWS), Microsoft Azure, and Oracle Cloud Infrastructure (OCI) cloud deployments of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to access sensitive data, execute limited administrative operations, modify system configurations, or disrupt services within the impacted systems. This vulnerability exists because credentials are improperly generated when Cisco ISE is being deployed on cloud platforms, resulting in different Cisco ISE deployments sharing the same credentials. These credentials are shared across multiple Cisco ISE deployments as long as the software release and cloud platform are the same. An attacker could exploit this vulnerability by extracting the user credentials from Cisco ISE that is deployed in the cloud and then using them to access Cisco ISE that is deployed in other cloud environments through unsecured ports. A successful exploit could allow the attacker to access sensitive data, execute limited administrative operations, modify system configurations, or disrupt services within the impacted systems. Note: If the Primary Administration node is deployed in the cloud, then Cisco ISE is affected by this vulnerability. If the Primary Administration node is on-premises, then it is not affected.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-259

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • amazon_web_services
  • azure
  • cloud_infrastructure
  • identity_services_engine

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Products
amazon_web_servicesazurecloud_infrastructureidentity_services_engine

5 versions affected across 4 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-26: 1Technical Details · 2026-05-26: 105-26
Signal classification1 categories
Disclosure
1100.0%
Full discourse1 post
  • Hugo | DevOps | Cybersecurity 🇱🇻@HugoValters
    Disclosure

    CVE-2025-20286 Critical flaw in Cisco ISE cloud deployments on AWS, Azure, OCI. Unauthenticated remote access to sensitive data, admin ops, config changes, or DoS. CVSS 9.9. No patch yet. Monitor immediately. #CVE #Cisco #infosec #infosecurity #CVEAlert More CVES, Patches 1/2

    Post summary

    The tweet announces CVE-2025-20286 as a critical flaw in Cisco ISE cloud deployments, explains its high impact and CVSS score, notes that no patch is available, and urges immediate monitoring.

    10000407
    904 followersView on X
CPE platform detail30 entries

30 of 30 entries

PartVendorProductVersionTarget SWTarget HW
Appamazonamazon_web_services---
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.1.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.2.0--
Appciscoidentity_services_engine3.3.0--
Appciscoidentity_services_engine3.3.0--
Appciscoidentity_services_engine3.3.0--
Appciscoidentity_services_engine3.3.0--
Appciscoidentity_services_engine3.3.0--
Appciscoidentity_services_engine3.3.0--
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.4.0--
OSmicrosoftazure---
Apporaclecloud_infrastructure---

Explore more