An authenticated attacker who reaches Cisco ISE’s admin web interface via SAML SSO can bypass authorisation checks on some administrative functions, including settings that trigger a device restart.
Every CISA KEV addition, plus critical-severity flaws in the kit that sits at the edge of a network: firewalls, VPN gateways, load balancers, routers, switches and management consoles.
Colour on the left of each entry is the CVSS severity. A pink CISA KEV badge means the flaw is being exploited right now — treat those first, whatever the score says. How each post is sourced and checked is set out in the methodology.
Cisco Identity Services Stored Cross-Site Scripting Vulnerability
An authenticated admin on Cisco ISE’s web interface can inject script into management pages, letting stored code run in another admin’s browser session when they view the affected page.
Cisco Unified Communications Manager Static SSH Credentials Vulnerability
Certain Cisco Unified Communications Manager engineering-special builds ship with a hardcoded root SSH account that cannot be changed or removed, letting anyone reach it log straight in as root.
Cisco Enterprise Chat and Email Stored Cross-Site Scripting Vulnerability
A stored XSS flaw in Cisco Enterprise Chat and Email’s web UI lets an attacker with valid agent credentials plant script that runs against agents who click a crafted link, if inbound email rich text filtering is left disabled.
Cisco Spaces Connector Privilege Escalation Vulnerability
A local flaw in Cisco Spaces Connector lets someone already logged in as spacesadmin run crafted CLI commands to gain full root control of the underlying operating system.
Cisco BroadWorks Application Delivery Platform Cross-Site Scripting Vulnerability
An authenticated admin using the BroadWorks Application Delivery Platform web interface can be tricked into running injected script code, letting an attacker steal session or browser data via that admin session.
Cisco Unified Intelligence Center Server-Side Request Forgery Vulnerability
Cisco Unified Intelligence Center’s web management interface fails to validate certain HTTP requests properly, letting an unauthenticated remote attacker force the device to send arbitrary network requests on its behalf.
Cisco Identity Services Engine Authenticated Remote Code Execution and Authorization Bypass Vulnerabilities
Three flaws in Cisco ISE and ISE-PIC let a logged-in high-privileged user run commands as root via a crafted API call, or bypass IP access restrictions to log into the admin portal from a disallowed address.
Cisco Prime Infrastructure and Evolved Programmable Network Manager Blind SQL Injection Vulnerability
An authenticated but low-privileged user can send a crafted request to a Prime Infrastructure or EPNM REST API to pull data out of backend database tables via blind SQL injection.
Cisco Unified Intelligence Center Arbitrary File Upload Vulnerability
An authenticated attacker holding at least Report Designer access to Cisco Unified Intelligence Center can upload arbitrary files through the web management interface and potentially escalate to root.