CVE-2026-20190

v celém archivu

Různé zkratky a hodnoty pod každou zprávou mají svoji legendu — pokud na údaji postojíte myší. Některé jsou klikatelné. Typicky CVE.

zrušit filtry CZ · EN/orig

CVE-2026-20190

EPSS 0.01

Hodnocení závažnosti

7.5 CVSS 3.1 cisco

útok odkudkoli z internetu bez přípravy bez přihlášení bez zásahu uživatele
dopad plný únik dat beze změny dat bez výpadku
přesah dopad jen na zranitelnou součást

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

zvyšuje závažnost mírně zvyšuje závažnost snižuje závažnost

2 karet z 2 položek

1

ZDI-26-580: Cisco Identity Services Engine Missing Authentication for Critical Function Information Disclosure Vulnerability

The vulnerability allows remote attackers to disclose sensitive information on affected installations of Cisco Identity Services Engine. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2026-20190.

EPSS 0.01 CVSS 7.5 CVE-2026-20190 Cisco telekomunikace US

Zero Day Initiative ·

1

Cisco Identity Services Engine Remote Code Execution and Information Disclosure Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to achieve remote code execution or conduct information disclosure attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at…

EPSS 0.01 CVE-2026-20181 CVE-2026-20190 Cisco US

Cisco PSIRT ·