Skip to content
theregister·

🔒Cisco Drops Critical Zero-Day Exploit in ISE

Another critical zero-day in Cisco's ISE

TL;DR

Cisco has disclosed a critical zero-day vulnerability in its Identity Services Engine (ISE) and ISE-PIC, allowing unauthenticated attackers to gain root access. This is the second major flaw in a week, urging immediate patching.

Cisco has dropped a critical zero-day vulnerability affecting its Identity Services Engine (ISE) and ISE-PIC, allowing unauthenticated attackers to gain root access. This flaw, with a CVSS score of 10.0, is under active attack and can be exploited to remove intrusion traces. Immediate patching is crucial as it's the second major flaw in a week. Affected versions are ISE and ISE-PIC 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, and 3.5 Patch 4. ISE 3.0 users must migrate to a supported release.

Cisco Drops Critical Zero-Day Exploit in ISE — theregister

Key Points

1

CVE-2023-2098: Authentication bypass in Cisco ISE and ISE-PIC, CVSS score 10.0

2

Exploitation leads to unauthenticated remote command execution with root privileges

3

Cisco urges immediate patching for versions 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, and 3.5 Patch 4

4

ISE 3.0 users must migrate to supported releases due to end of software maintenance

5

Cisco disclosed the vulnerability while resolving a Technical Assistance Center support case

Why It Matters

If you're managing Cisco ISE, this is a critical update. The vulnerability allows attackers to gain root access and hide their tracks, complicating breach detection. Immediate patching is essential, especially for versions 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, and 3.5 Patch 4. ISE 3.0 users must upgrade to avoid exposure.

ciscoisezero-daypatchingcybersecurity

Comments

Subscribe to join the conversation...

Be the first to comment

Enjoyed this article?

Get it daily. 7am. Free. Reads in 5 minutes.

Join 3,483 builders reading daily.

Also get