Cisco Identity Services Engine... Note

Cisco Identity Services Engine Authentication Bypass Vulnerabilities

Multiple vulnerabilities have been identified in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC). These vulnerabilities could permit a remote attacker to gain unauthorized data access or manipulation. Attackers might also be able to obtain sensitive information through these flaws. Additionally, it's possible for an attacker to trigger a reload of certificate and key material on affected devices. Cisco has made software updates available to resolve these vulnerabilities. Unfortunately, there are no alternative solutions or workarounds that can mitigate these security issues. The security impact rating for these vulnerabilities has been classified as Medium. Several CVE identifiers are associated with these specific vulnerabilities. For detailed information, users should consult the provided advisory link. This advisory is part of a larger release of security updates from Cisco.