CVE-2026-20190Patch(cisco / identity_services_engine)

LOWCVSS 7.5 · HIGH

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch cisco identity_services_engine systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information on an affected device. This vulnerability is due to improper authorization checks when a resource is accessed. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to gain access to sensitive information, including hashed credentials that could be used in future attacks.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-285

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • identity_services_engine
  • identity_services_engine_passive_identity_connector

Threat summary

  • Patch or workaround signal is available
  • 12 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 6 signals
  • Technical details provided in 11 signals
  • Disclosure: 5 classified signals
  • General: 1 classified signal
  • Peaked 2d ago at 4 mentions (2026-06-17); latest day: 4
  • 12 total mentions across 3 days

Affected systems

Vendors
Products
identity_services_engineidentity_services_engine_passive_identity_connector

2 versions affected across 2 products

Deep dive

Activity timeline12 mentions / 3d
01234Mentions · 2026-06-17: 4Mentions · 2026-06-18: 4Mentions · 2026-06-19: 4Patch / Workaround · 2026-06-17: 1Patch / Workaround · 2026-06-18: 1Patch / Workaround · 2026-06-19: 4Technical Details · 2026-06-17: 4Technical Details · 2026-06-18: 4Technical Details · 2026-06-19: 306-1706-1806-19
Signal classification3 categories
Patch
650.0%
Disclosure
541.7%
General
18.3%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-06-174
Disclosure2General1Patch1
2026-06-184
Disclosure3Patch1
2026-06-194
Patch4
Full discourse12 posts
  • にゃん☆たく/takumi.a@taku888infinity
    Disclosure

    【セキュリティ ニュース】「Cisco ISE」にRCE脆弱性 - 端末の接続に影響するおそれも(1ページ目 / 全2ページ):Security NEXT https://www.security-next.com/186046 CVE-2026-20181/CVE-2026-20190 Cisco Identity Services Engineにおけるリモートコード実行および情報漏洩の脆弱性 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv

    Post summary

    The article announces a new Cisco Identity Services Engine vulnerability (CVE‑2026‑20181/CVE‑2026‑20190) that allows remote code execution and information leakage, but provides no PoC, exploit, or patch details.

    010321.6K
    11.8K followersView on X
  • NCIIPC India@NCIIPC
    Patch

    #Cisco released Security Updates to address multiple Vulnerabilities in Cisco Identity Services Engine (#ISE) and Cisco ISE Passive Identity Connector (#ISE-PIC). Apply Updates! #CVE-2026-20181 #CVE-2026-20190 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv

    Post summary

    Cisco has issued security updates for several ISE-related vulnerabilities, encouraging users to apply the patches via the provided advisory link.

    00002277
    8.5K followersView on X
  • Divinmentis@Divinmentis
    Patch

    🚨 Cisco ISE patch watch: Cisco fixed CVE-2026-20181 and CVE-2026-20190 in ISE and ISE-PIC. The advisory says the flaws can enable remote code execution or sensitive information disclosure, with no workarounds. #Cisco #Cyber https://t.co/ElVl2jK4ES

    Post summary

    Cisco has released patches for CVE‑2026‑20181 and CVE‑2026‑20190 in ISE, addressing remote code execution and sensitive data disclosure vulnerabilities with no workarounds available.

    2000078
    26 followersView on X
  • Autumn Good@autumn_good_35
    Disclosure

    『allow a remote attacker to achieve remote code execution or conduct information disclosure attacks on an affected device.』 CVE-2026-20181 CVE-2026-20190 Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv

    Post summary

    This Cisco advisory discloses CVE-2026-20181 and CVE-2026-20190, which permit remote code execution or information disclosure on affected devices.

    10001563
    6.9K followersView on X
  • Daily CyberSecurity@the_yellow_fall
    Patch

    Critical Cisco ISE vulnerabilities expose networks to Remote Code Execution (CVE-2026-20181) and data theft (CVE-2026-20190). Patch affected systems now. #CiscoISE #CyberSecurity #CVE202620181 #CVE202620190 #InfoSec https://securityonline.info/cisco-ise-vulnerabilities https://t.co/DhHIGCFdwU

    Post summary

    The tweet announces two critical Cisco ISE vulnerabilities (CVE‑2026‑20181 and CVE‑2026‑20190) that allow remote code execution and data theft, and urges immediate patching of affected systems.

    00101460
    12.3K followersView on X
  • Brainwork@brainworkblog
    Patch

    Cisco corrige falhas no ISE e ISE-PIC 🚨 A Cisco publicou em 17 de junho de 2026 um advisory sobre vulnerabilidades no ISE e no ISE-PIC que exigem atenção imediata das equipes técnicas. A CVE-2026-20181 pode permitir execução remota de código por um atacante autenticado com credenciais administrativas válidas. Já a CVE-2026-20190 pode expor informações sensíveis a um atacante remoto não autenticado. Além disso, a fabricante afirma que não há workarounds. Portanto, a resposta prática passa por validar a versão em uso, identificar a exposição a cada CVE e aplicar as correções indicadas no advisory. 🔐 Para ambientes que dependem do ISE para autenticação e controle de acesso, a atualização deve entrar no radar com prioridade. Detalhes no blog. #CiscoISE #SegurancaDaInformacao #Ciberseguranca #GestaoDeVulnerabilidades #PatchManagement

    Post summary

    Cisco released a patch advisory for ISE and ISE‑PIC CVEs, noting remote code execution and data exposure risks; the advisory stresses applying Cisco’s fixes as no workarounds exist.

    0000098
    575 followersView on X
  • CCB Alert@CCBalert
    Patch

    Warning: Cisco released security updates for critical CVE-2026-20181 and high-severity CVE-2026-20190 affecting Cisco ISE and Cisco ISE-PIC. Exploitation allows remote attackers to execute arbitrary code or access sensitive information. Patch Patch Patch https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multi-G5WP8vv

    Post summary

    Cisco has released patches for CVE-2026-20181 and CVE-2026-20190, which allow remote code execution or data access; a patch URL is provided, but no PoC or exploit details are shared.

    00000303
    7.2K followersView on X
  • Divinmentis@Divinmentis
    Patch

    @SecurityWeek Useful split: CVE-2026-20181 is admin-authenticated command execution, while CVE-2026-20190 is unauthenticated disclosure. With no workaround, patching should move with admin-plane exposure reduction, credential hygiene, and auth-log review. https://t.co/QtTJmCMvzP

    Post summary

    The tweet highlights two CVEs—CVE‑2026‑20181 with admin‑authenticated command execution and CVE‑2026‑20190 with unauthenticated disclosure—and urges prompt patching alongside administrative controls due to lack of a workaround.

    0000074
    26 followersView on X
  • Divinmentis@Divinmentis
    Disclosure

    🛰️ Source notes: Cisco rates CVE-2026-20181 critical at CVSS 9.1 and says exploitation requires valid administrative credentials. CVE-2026-20190 is unauthenticated information disclosure that can expose sensitive data such as hashed credentials. https://t.co/9Mq6ce698M

    Post summary

    The tweet reports Cisco’s assessment of two CVEs, providing severity scores and exploitation conditions, without mentioning PoCs, exploits, or patches.

    0000076
    26 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-20190 A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information on an affected device. This vulnerability is… https://www.cve.org/CVERecord?id=CVE-2026-20190 ----- Traducción: CVE-2026-20190 Una v… http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-20190, a remote unauthenticated information disclosure flaw in Cisco ISE and ISE-PIC devices.

    0000059
    82 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-20190 A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information on an affected device. This vulnerability is… https://www.cve.org/CVERecord?id=CVE-2026-20190

    Post summary

    A newly disclosed vulnerability (CVE-2026-20190) in Cisco ISE and ISE‑PIC allows an unauthenticated, remote attacker to view sensitive information on affected devices.

    00000282
    57.6K followersView on X
  • Kaitan ID Security@KaitanSecurity
    General

    ⚠️ HIGH — CVE-2026-20190 A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information … CVSS 7.5 Full analysis → https://sec.kaitan.id/cves/CVE-2026-20190 #Cisco #CyberSecurity #InfoSec

    Post summary

    The post announces a high‑severity (CVSS 7.5) Cisco ISE information‑disclosure vulnerability (CVE‑2026‑20190) with no indication of PoC, exploit code, active attacks, or patch status.

    0000080
    81 followersView on X
CPE platform detail18 entries

18 of 18 entries

PartVendorProductVersionTarget SWTarget HW
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.4.0--
Appciscoidentity_services_engine3.5.0--
Appciscoidentity_services_engine3.5.0--
Appciscoidentity_services_engine3.5.0--
Appciscoidentity_services_engine_passive_identity_connector3.4.0--
Appciscoidentity_services_engine_passive_identity_connector3.4.0--
Appciscoidentity_services_engine_passive_identity_connector3.4.0--
Appciscoidentity_services_engine_passive_identity_connector3.4.0--
Appciscoidentity_services_engine_passive_identity_connector3.4.0--
Appciscoidentity_services_engine_passive_identity_connector3.4.0--
Appciscoidentity_services_engine_passive_identity_connector3.5.0--
Appciscoidentity_services_engine_passive_identity_connector3.5.0--
Appciscoidentity_services_engine_passive_identity_connector3.5.0--

Explore more