🔒Cisco Drops Critical Zero-Day Exploit in ISE
Another critical zero-day in Cisco's ISE
TL;DR
Cisco has disclosed a critical zero-day vulnerability in its Identity Services Engine (ISE) and ISE-PIC, allowing unauthenticated attackers to gain root access. This is the second major flaw in a week, urging immediate patching.
Cisco has dropped a critical zero-day vulnerability affecting its Identity Services Engine (ISE) and ISE-PIC, allowing unauthenticated attackers to gain root access. This flaw, with a CVSS score of 10.0, is under active attack and can be exploited to remove intrusion traces. Immediate patching is crucial as it's the second major flaw in a week. Affected versions are ISE and ISE-PIC 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, and 3.5 Patch 4. ISE 3.0 users must migrate to a supported release.

Key Points
CVE-2023-2098: Authentication bypass in Cisco ISE and ISE-PIC, CVSS score 10.0
Exploitation leads to unauthenticated remote command execution with root privileges
Cisco urges immediate patching for versions 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, and 3.5 Patch 4
ISE 3.0 users must migrate to supported releases due to end of software maintenance
Cisco disclosed the vulnerability while resolving a Technical Assistance Center support case
Why It Matters
If you're managing Cisco ISE, this is a critical update. The vulnerability allows attackers to gain root access and hide their tracks, complicating breach detection. Immediate patching is essential, especially for versions 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, and 3.5 Patch 4. ISE 3.0 users must upgrade to avoid exposure.
Comments
Be the first to comment
Enjoyed this article?
Get it daily. 7am. Free. Reads in 5 minutes.
Join 3,483 builders reading daily.