Výsledky hledání

výrobce: Cisco× typ: zranitelnost× v celém archivu zrušit filtry

62 karet z 91 položek · strana 1 z 2 CZ · EN/orig

4

ZDI-26-716: Cisco Identity Services Engine createDBLink Command Injection Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-20176.

EPSS 0.01 CVSS 7.2 CVE-2026-20176 Cisco US

tg: zranitelnost

· Zero Day Initiative · ZDI-26-716: Cisco Identity Services Engine createDBLink Command Injection Remote Code Execution Vulnerability

ZDI-26-717: Cisco Identity Services Engine AlarmMessageDiskQueue Deserialization of Untrusted Data Remote Code Execution Vulnerability

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.2. The following CVEs are assigned: CVE-2026-20211.

EPSS 0.01 CVSS 7.2 CVE-2026-20211 Cisco US

tg: zranitelnost

· Zero Day Initiative · ZDI-26-717: Cisco Identity Services Engine AlarmMessageDiskQueue Deserialization of Untrusted Data Remote Code Execution Vulnerability

SPOJENO PŘES CVE ZDI-26-718: Cisco Identity Services Engine MnTRESTLivelogService XML External Entity Processing Information Disclosure Vulnerability

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Cisco Identity Services Engine. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 4.9. The following CVEs are assigned: CVE-2026-20235.

EPSS 0.00 CVSS 4.9 CVE-2026-20235 Cisco US

tg: zranitelnost tp: identita

· Zero Day Initiative · ZDI-26-718: Cisco Identity Services Engine MnTRESTLivelogService XML External Entity Processing Information Disclosure Vulnerability · Cisco PSIRT · Cisco Identity Services Engine Information Disclosure Vulnerability

5

AL26-021 - Vulnerabilities Impacting Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) - CVE-2026-20192, CVE-2026-76423 and CVE-2026-76460

Number: AL26-021Date: September 17, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat that may impact cyber information assets, and to provide additional detection and mitigation advice to recipients. The Canadian Centre for Cyber Security ("Cyber Centre") is also available to provide additional assistance regarding the content of this Alert to recipients as requested. Details The Canadian…

KEV ✓ EPSS 0.01 CVE-2026-20192 CVE-2026-76423 CVE-2026-76460 Cisco CA

tg: zneužíváno tg: zranitelnost tp: identita

· Cyber Centre Kanada · AL26-021 - Vulnerabilities Impacting Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) - CVE-2026-20192, CVE-2026-76423 and CVE-2026-76460

SPOJENO PŘES CVE Cisco security advisory (AV26-932)

Serial number: AV26-932Date: September 17, 2026 As of September 16, 2026, Cisco is affected by vulnerabilities in the following products: Cisco Secure Firewall Threat Defense (FTD) Software Prior to 7.0.10, 7.2.12, 7.4.8, 7.6.6, 7.7.13, 10.0.2 and 10.1.0 Cisco Secure Firewall Management Center (FMC) Software Prior to 7.0.10, 7.2.12, 7.4.8, 7.6.6, 7.7.13, 10.0.2 and 10.1.0 Cisco Identity Services Engine (ISE) Software Prior to 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7 and 3.5 Patch 4…

KEV ✓ EPSS 0.01 CVE-2026-76460 Cisco CA SE HU IT FR US

tg: zneužíváno tg: zranitelnost tp: identita

· Cyber Centre Kanada · Cisco security advisory (AV26-932) · CERT-SE · Cisco publicerar säkerhetsuppdateringar för flera sårbarheter · NKI Maďarsko · Riasztás Cisco szoftvereket érintő sérülékenységekről · CSIRT Itálie (ACN) · Risolte vulnerabilità in prodotti Cisco · CERT-FR – avis · Multiples vulnérabilités dans les produits Cisco (17 septembre 2026) · Cisco PSIRT · Cisco Identity Services Engine Authentication Bypass Vulnerability · CISA KEV · Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability (CVE-2026-76460)

NCSC-2026-0382 [1.00] [H/H] Kwetsbaarheden verholpen in Cisco Identity Services Engine (ISE)

Cisco heeft 21 kwetsbaarheden verholpen in Cisco Identity Services Engine (ISE) en Cisco ISE Passive Identity Connector (ISE-PIC). De kwetsbaarheden betreffen verschillende beveiligingsproblemen in Cisco ISE en ISE-PIC, waaronder mogelijkheden voor niet-geauthenticeerde en laaggeprivilegieerde kwaadwillenden om via netwerktoegang ongeautoriseerde acties uit te voeren. De kwetsbaarheden hebben CVSS-scores variërend van middel tot kritiek. Van de in totaal 21 kwetsbaarheden zijn 13 als kritiek…

KEV ✓ EPSS 0.01 CVE-2026-20130 CVE-2026-20192 CVE-2026-76423 CVE-2026-76460 Cisco NL

tg: zneužíváno tg: zranitelnost tp: identita

· NCSC-NL · NCSC-2026-0382 [1.00] [H/H] Kwetsbaarheden verholpen in Cisco Identity Services Engine (ISE)

Cisco warns of max severity ISE zero-day exploited in attacks

Cisco has released security updates to address a maximum-severity Identity Services Engine vulnerability that attackers are actively exploiting in the wild. [...]

KEV ✓ EPSS 0.68 CVE-2025-20337 CVE-2026-20176 CVE-2026-20211 CVE-2026-20284 CVE-2026-20307 CVE-2026-76423 CVE-2026-76460 Cisco US

tg: zneužíváno tg: zranitelnost tp: identita

· BleepingComputer · Cisco warns of max severity ISE zero-day exploited in attacks

Cisco - Multiple security advisories 2026-09-16

Classification: Critical, Solution: Official Fix, Exploit Maturity: High, CVSSv3.1: 10.0, CVEs: CVE-2026-20350, CVE-2026-20309, CVE-2026-20247, CVE-2026-20300, CVE-2026-20176, CVE-2026-20211, CVE-2026-20307, CVE-2026-76448, CVE-2026-76449, CVE-2026-76450, CVE-2026-76451, CVE-2026-76439, CVE-2026-76444, CVE-2026-76446, CVE-2026-76447, CVE-2026-20071, CVE-2026-20072, CVE-2026-76431, CVE-2026-76432, CVE-2026-76433 (+59 other associated CVEs), Summary: Advisories: Cisco ThousandEyes Virtual…

CVSS 10.0 Cisco FI

tg: zranitelnost

· NCSC-FI · Cisco - Multiple security advisories 2026-09-16

31

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability

Update for September 16, 2026: The original 1.0 version of this advisory was specific to the Cisco Adaptive Security Virtual Appliance (ASAv) and Cisco Secure Firewall Threat Defense Virtual (FTDv) models. However, it was later found that this vulnerability affects all Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software platforms. A vulnerability in the VPN and management web servers of the Cisco Secure Firewall ASA Software…

EPSS 0.01 CVE-2024-20260 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software SSL VPN Denial of Service Vulnerability

Cisco Secure Firewall Management Center Software sftunnel Root Arbitrary Code Execution Vulnerability

A vulnerability in the sftunnel inter-device communication protocol of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to execute arbitrary commands as root. This vulnerability exists because a registered sftunnel peer has incorrect permissions to write an arbitrary file to any location on the device. An attacker could exploit this vulnerability by hijacking the sftunnel communication connection or being a valid registered sftunnel peer and…

EPSS 0.00 CVE-2026-20324 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Management Center Software sftunnel Root Arbitrary Code Execution Vulnerability

Cisco Identity Services Engine SQL Injection Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow a remote attacker to conduct SQL injection attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content…

EPSS 0.00 CVE-2026-20247 CVE-2026-20300 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine SQL Injection Vulnerabilities

Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct SQL or HQL injection attacks on an affected device. These vulnerabilities are due to insufficient validation of user-supplied input to the affected APIs before it is used to build database queries. An attacker could exploit these vulnerabilities by sending a crafted request to an affected device. A successful exploit could…

EPSS 0.00 CVE-2026-76448 CVE-2026-76449 CVE-2026-76450 CVE-2026-76451 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability

A vulnerability in the certification authentication feature of Internet Key Exchange version 2 (IKEv2) for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly. This vulnerability is due to a logic error during the certificate authentication phase of the IKEv2 connection setup. An attacker could exploit this vulnerability by…

EPSS 0.00 CVE-2026-20249 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software IKEv2 Certificate Authentication Denial of Service Vulnerability

Cisco Identity Services Engine Authentication Bypass Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to access or manipulate data, obtain sensitive information, or cause a reload of certificate and key material on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these…

EPSS 0.00 CVE-2026-76439 CVE-2026-76444 CVE-2026-76446 CVE-2026-76447 Cisco US

tg: zranitelnost tp: identita

· Cisco PSIRT · Cisco Identity Services Engine Authentication Bypass Vulnerabilities

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability

A vulnerability in the system rate-limiting process for syslog message 419002 of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause high CPU utilization on an affected device, resulting in a denial of service (DoS) condition. This vulnerability is due to improper rate limiting for syslog message 419002. An attacker could exploit this vulnerability by sending a flood of…

EPSS 0.00 CVE-2026-20154 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Logging Denial of Service Vulnerability

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability

A vulnerability in the EIGRP implementation in Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper resource management when handling EIGRP update messages. An attacker could exploit this vulnerability by sending crafted EIGRP updates at a high rate…

EPSS 0.00 CVE-2026-20222 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software EIGRP Denial of Service Vulnerability

Cisco BroadWorks CommPilot Application Software Authorization Bypass Vulnerability

A vulnerability in the web-based management interface of Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacker with low privileges to alter configurations on an affected device. This vulnerability is due to missing authorization checks. An attacker could exploit this vulnerability by sending a crafted HTTP request. A successful exploit could allow the attacker to alter configurations on select pages. Cisco has released software updates that address this…

EPSS 0.00 CVE-2026-76438 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco BroadWorks CommPilot Application Software Authorization Bypass Vulnerability

Cisco Nexus Dashboard Software Security Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Nexus Dashboard engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these issues by…

EPSS 0.00 CVE-2026-20322 CVE-2026-20325 CVE-2026-20326 CVE-2026-20360 CVE-2026-20361 CVE-2026-76409 Cisco US

tg: zranitelnost tg: novinka v produktu

· Cisco PSIRT · Cisco Nexus Dashboard Software Security Hardening Release: September 2026

Cisco Secure Firewall Management Center Software Vulnerabilities

Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software could allow a remote attacker to gain root access and perform session forgery or session impersonation. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com…

EPSS 0.00 CVE-2026-76412 CVE-2026-76413 CVE-2026-76420 Cisco US

tg: zranitelnost tp: identita

· Cisco PSIRT · Cisco Secure Firewall Management Center Software Vulnerabilities

Cisco Identity Services Engine Authorization Bypass Vulnerabilities

Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to modify parts of the configuration on an affected device. These vulnerabilities are due to the lack of server-side validation of Administrator permissions. An attacker could exploit these vulnerabilities by submitting a crafted HTTP request to an affected system. A successful exploit could allow…

EPSS 0.00 CVE-2026-20285 CVE-2026-20286 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Authorization Bypass Vulnerabilities

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Object Group Access Control List Bypass Vulnerabilities

Multiple vulnerabilities in the access control list (ACL) Object Group Search (OGS) implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured access controls. These vulnerabilities are due to a logic error in populating group access control policies (ACPs) with OGS configured. An attacker could exploit these vulnerabilities by sending traffic that…

EPSS 0.00 CVE-2026-20120 CVE-2026-20121 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Object Group Access Control List Bypass Vulnerabilities

Cisco Identity Services Engine Command Injection Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to perform command injection attacks on an affected device and execute arbitrary commands as the root user. To exploit these vulnerabilities, the attacker must have valid administrative credentials. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that…

EPSS 0.01 CVE-2026-20305 CVE-2026-20306 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Command Injection Vulnerabilities

Cisco Identity Services Engine Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the…

EPSS 0.00 CVE-2026-20309 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Cross-Site Scripting Vulnerability

Cisco Identity Services Engine Multiple Path Traversal Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to conduct path traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps…

EPSS 0.01 CVE-2026-76431 CVE-2026-76432 CVE-2026-76433 CVE-2026-76434 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Multiple Path Traversal Vulnerabilities

Cisco Identity Services Engine Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing. One of them is known to be actively exploited. For more information, see Cisco…

EPSS 0.00 CVE-2026-20130 CVE-2026-20192 CVE-2026-20194 CVE-2026-20234 CVE-2026-20237 CVE-2026-20287 Cisco US

tg: zneužíváno tg: zranitelnost tg: novinka v produktu tp: identita

· Cisco PSIRT · Cisco Identity Services Engine Hardening Release: September 2026

Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability

A vulnerability in SSL/TLS certificate parsing in the Snort 2 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 2 Detection Engine to restart. This vulnerability is due to incomplete validation of the SSL certificate. An attacker could exploit this vulnerability by sending a crafted SSL connection setup request to be parsed by Snort 2. A successful exploit could allow the attacker to cause the Snort 2…

EPSS 0.00 CVE-2026-20290 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Threat Defense Software Snort 2 SSL/TLS Denial of Service Vulnerability

Cisco ThousandEyes Virtual Appliance Authenticated Web Interface Command Injection Vulnerability

A vulnerability in the web-based management interface of Cisco ThousandEyes Virtual Appliance could allow an authenticated, remote attacker to inject arbitrary operating system commands. This vulnerability is due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by saving configuration details that contain malicious values. A successful exploit could allow the attacker to execute arbitrary operating system commands…

EPSS 0.00 CVE-2026-20350 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco ThousandEyes Virtual Appliance Authenticated Web Interface Command Injection Vulnerability

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability

A vulnerability in the DNS over TCP implementation of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the TCP DNS response handler to unexpectedly restart, causing the device to reload. This vulnerability is due to a logic error when parsing a DNS query and tracking the size of the incoming buffers. An attacker could exploit this vulnerability by formatting a crafted…

EPSS 0.00 CVE-2026-20248 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software TCP DNS Denial of Service Vulnerability

Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Firewall Adaptive Security Appliance (ASA) Software, Cisco Secure Firewall Threat Defense (FTD) Software and Cisco Secure Firewall Management Center (FMC) Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal…

EPSS 0.00 CVE-2026-20329 CVE-2026-20330 CVE-2026-20331 CVE-2026-20332 CVE-2026-20333 CVE-2026-20334 CVE-2026-20335 CVE-2026-20336 Cisco US

tg: zneužíváno tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance, Secure Firewall Threat Defense, and Secure Firewall Management Center Software Hardening Release: September 2026

Cisco Secure Firewall Management Center Software Vulnerabilities

Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software could allow a remote attacker to gain root access, download sensitive files, perform a SQL injection attack, or cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the…

EPSS 0.01 CVE-2026-20340 CVE-2026-20341 CVE-2026-20342 CVE-2026-20343 CVE-2026-20344 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Management Center Software Vulnerabilities

Cisco Identity Services Engine 802.1X Session Hijack and Information Disclosure Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an unauthenticated, local attacker to either conduct an authentication bypass or disclose sensitive information. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following link:https://sec.cloudapps.cisco.com…

EPSS 0.00 CVE-2026-20071 CVE-2026-20072 Cisco US

tg: zranitelnost tp: identita

· Cisco PSIRT · Cisco Identity Services Engine 802.1X Session Hijack and Information Disclosure Vulnerabilities

Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability

A vulnerability in the TLS 1.3 implementation in Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper buffer management during the TLS 1.3 connection. An attacker could exploit this vulnerability by sending a crafted TLS 1.3 packet to an affected system through a TLS 1.3-enabled listening socket. A successful…

EPSS 0.00 CVE-2026-20135 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Threat Defense Software TLS 1.3 Denial of Service Vulnerability

Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software sftunnel Vulnerabilities

Multiple vulnerabilities in Cisco Secure Firewall Management Center (FMC) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated attacker to perform an sftunnel authentication bypass or sftunnel denial of service (DoS) attack. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This…

EPSS 0.01 CVE-2026-20295 CVE-2026-20323 Cisco US

tg: zranitelnost tp: DDoS tp: identita

· Cisco PSIRT · Cisco Secure Firewall Management Center and Secure Firewall Threat Defense Software sftunnel Vulnerabilities

Cisco Identity Services Engine RADIUS Denial of Service Vulnerability

A vulnerability in the RADIUS feature of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain RADIUS requests. An attacker could exploit this vulnerability by sending a crafted RADIUS request directly to an affected device. A successful exploit could allow the attacker to cause the ISE node to become unavailable. For single node…

EPSS 0.00 CVE-2026-20352 Cisco US

tg: zranitelnost tp: DDoS

· Cisco PSIRT · Cisco Identity Services Engine RADIUS Denial of Service Vulnerability

Cisco Identity Services Engine Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow a remote attacker to bypass authentication to the REST API, achieve remote code execution, perform SQL injection, and conduct XML External Entity injection attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no…

EPSS 0.01 CVE-2026-76423 CVE-2026-76424 CVE-2026-76425 CVE-2026-76426 CVE-2026-76427 CVE-2026-76428 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Vulnerabilities

Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct SQL injections, modify data, or execute arbitrary commands on the underlying operating system on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Note: For CVE-2026-20282 and CVE-2026-20283, Cisco has assigned a Security Impact Rating (SIR) of High rather than Medium as the scores indicate. The reason is that it…

EPSS 0.01 CVE-2026-20282 CVE-2026-20283 CVE-2026-20284 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Authenticated Remote Code Execution and API Vulnerabilities

Cisco Identity Services Engine Remote Code Execution Vulnerabilities

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To exploit these vulnerabilities, the attacker must have valid administrative credentials. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these…

EPSS 0.01 CVE-2026-20176 CVE-2026-20211 CVE-2026-20307 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Identity Services Engine Remote Code Execution Vulnerabilities

SPOJENO PŘES CVE Cisco Secure Firewall Management Center Software Java Deserialization Remote Code Execution Vulnerability

A vulnerability in the External Database Access feature of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to execute arbitrary commands as root on an affected device. This vulnerability is due to insecure deserialization of a user-supplied Java byte stream from a host that is configured in the external database access list. An attacker could exploit this vulnerability by sending a crafted, serialized Java byte stream to a specific TCP port…

EPSS 0.01 CVSS 8.1 CVE-2026-20242 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Management Center Software Java Deserialization Remote Code Execution Vulnerability · Zero Day Initiative · ZDI-26-709: Cisco Secure Firewall Management Center CommandSinkRmi Deserialization of Untrusted Data Remote Code Execution Vulnerability

Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability

A vulnerability in Datagram TLS (DTLS) message handling of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software for Cisco Secure Firewall 3100 Series and 4200 Series devices could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper resource management when processing certain DTLS messages. An attacker could exploit this vulnerability…

EPSS 0.01 CVE-2026-20250 Cisco US

tg: zranitelnost

· Cisco PSIRT · Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software for Secure Firewall 3100 and 4200 Series DTLS Denial of Service Vulnerability

4

SPOJENO PŘES CVE Kritische Sicherheitslücke in Cisco Secure Email Gateway - aktiv ausgenutzt - Updates verfügbar

15. September 2026 Beschreibung In Cisco Secure Email Gateway existiert eine kritische Sicherheitslücke. Bei erfolgreicher Ausnutzung könnte diese Sicherheitslücke es nicht authentifizierten Angreifer:innen aus der Ferne ermöglichen Befehle mit Root-Rechten auf dem zugrunde liegenden Betriebssystem auszuführen. Laut Cisco wurde eine Ausnutzung der Sicherheitslücke bereits beobachtet. CVE-Nummer(n): CVE-2026-76461 CVSS Base Score: 9.8 Auswirkungen Ein Angreifer könnte diese Sicherheitslücke…

KEV ✓ EPSS 0.02 CVSS 9.8 CVE-2026-76461 Cisco veřejná správa AT SE US FI GB FR CA IT

tg: zneužíváno tg: zranitelnost tg: regulace

· CERT.at · Kritische Sicherheitslücke in Cisco Secure Email Gateway - aktiv ausgenutzt - Updates verfügbar · CERT-SE · Kritisk sårbarhet i Cisco Secure Email Gateway utnyttjas aktivt · Rapid7 · CVE-2026-76461: Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild · NCSC-FI · Cisco Secure Email Gateway SQL Injection Vulnerability · Sophos Threat Research · Cisco Secure Email Gateway vulnerability (CVE-2026-76461) in active exploitation · CERT-FR – avis · Multiples vulnérabilités dans les produits Cisco (15 septembre 2026) · Cyber Centre Kanada · Cisco security advisory (AV26-921) · CSIRT Itálie (ACN) · Cisco: sfuttamento in rete della CVE-2026-76461 relativa a Secure Email Gateway · Cisco PSIRT · Cisco Secure Email Gateway SQL Injection Vulnerability · CISA Advisories · CISA Adds One Known Exploited Vulnerability to Catalog · CISA KEV · Cisco Secure Email Gateway SQL Injection Vulnerability (CVE-2026-76461)

SPOJENO PŘES CVE Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8, CVEs: CVE-2026-20353, CVE-2026-76440, CVE-2026-76441, CVE-2026-76442, CVE-2026-76443, Summary: As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally…

EPSS 0.00 CVSS 9.8 CVE-2026-20353 CVE-2026-76440 CVE-2026-76441 CVE-2026-76442 CVE-2026-76443 Cisco FI US

tg: zneužíváno tg: zranitelnost

· NCSC-FI · Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026 · Cisco PSIRT · Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026

1

NCSC-2026-0368 [1.00] [H/H] Kwetsbaarheid verholpen in Cisco Secure Email Gateway

Cisco heeft een kwetsbaarheid verholpen in Cisco Secure Email Gateway. De kwetsbaarheid bevindt zich in de verwerking van e-mailberichten binnen Cisco AsyncOS Software voor Cisco Secure Email Gateway en wordt veroorzaakt door onvoldoende validatie van inkomende e-mailberichten. Een niet-geauthenticeerde kwaadwillende kan een speciaal vervaardigd e-mailbericht met kwaadaardige SQL-instructies naar een kwetsbaar systeem versturen. Succesvol misbruik kan leiden tot het uitvoeren van willekeurige…

Cisco NL

tg: zneužíváno tg: zranitelnost

· NCSC-NL · NCSC-2026-0368 [1.00] [H/H] Kwetsbaarheid verholpen in Cisco Secure Email Gateway

2

SPOJENO PŘES CVE NCSC-2026-0271 [1.01] [M/H] Kwetsbaarheid verholpen in Cisco Secure Firewall Management Center

Cisco heeft een kwetsbaarheid verholpen in Cisco Secure Firewall Management Center. De kwetsbaarheid bevindt zich in de webinterface van Cisco Secure Firewall Management Center en betreft een hard-coded, statisch wachtwoord voor een laaggeprivilegieerd account. Hierdoor kunnen niet-geauthenticeerde externe aanvallers toegang verkrijgen zonder inloggegevens. Deze toegang kan leiden tot het blootstellen van gevoelige data die door het systeem wordt opgeslagen of beheerd. In combinatie met andere…

KEV ✓ · ransomware EPSS 0.11 CVSS 9.8 CVE-2026-20316 Cisco NL US

tg: zneužíváno tg: zranitelnost

· NCSC-NL · NCSC-2026-0271 [1.01] [M/H] Kwetsbaarheid verholpen in Cisco Secure Firewall Management Center · Cisco PSIRT · Cisco Secure Firewall Management Center Software Static Credential Vulnerability · Zero Day Initiative · ZDI-26-533: Cisco Secure Firewall Management Center login.cgi Authentication Bypass Vulnerability · CISA KEV · Cisco Secure Firewall Management Center Use of Hard-coded Password Vulnerability (CVE-2026-20316)

SPOJENO PŘES CVE NCSC-2026-0076 [1.02] [H/H] Kwetsbaarheden verholpen in Cisco Secure Firewall Management Center

Cisco heeft kwetsbaarheden verholpen in Cisco Secure Firewall Management Center. De kwetsbaarheid met kenmerk CVE-2026-20079 bevindt zich in de webinterface van Cisco Secure Firewall Management Center. Een ongeauthenticeerde externe kwaadwillende kan de authenticatiecontroles omzeilen door een onjuist systeemproces dat bij het opstarten is aangemaakt te misbruiken. De kwaadwillende kan deze kwetsbaarheid misbruiken door speciaal geprepareerde HTTP-verzoeken naar een getroffen apparaat te sturen…

KEV ✓ · ransomware EPSS 0.76 CVE-2026-20079 CVE-2026-20131 Cisco NL CA

tg: zneužíváno tg: zranitelnost tp: ransomware

· NCSC-NL · NCSC-2026-0076 [1.02] [H/H] Kwetsbaarheden verholpen in Cisco Secure Firewall Management Center · Cyber Centre Kanada · Cisco security advisory (AV26-197) – Update 3

3

SPOJENO PŘES CVE We've got one word for it, and it's usually the wrong one

Welcome to this week’s edition of the Threat Source newsletter. Ask anybody in this industry what the work does to the health of the people who do it and you get one word back: burnout. It's a fine word, in and of itself. It’s easy to reach for, understandable to everyone… and it's the wrong one, most of the time. So, story time. Last year I gave an interview with the amazing Hazel Burton about VPNFilter, and my run-in with burnout. I was a manager during that time, and it took a toll on me and…

KEV ✓ · ransomware EPSS 0.76 CVSS 10.0 CVE-2026-20079 CVE-2026-20316 Cisco US

tg: zneužíváno tg: zranitelnost tg: rozbor tg: názor tg: přehled tp: malware tp: ransomware tp: špionáž

· Cisco Talos · We've got one word for it, and it's usually the wrong one · BleepingComputer · Cisco FMC flaws exploited by ransomware gang, state-sponsored hackers

4

SPOJENO PŘES CVE Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks

Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks. [...]

KEV ✓ EPSS 0.76 CVE-2026-20079 Cisco veřejná správa US

tg: zneužíváno tg: zranitelnost tp: identita

· BleepingComputer · Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks · CISA KEV · Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerability (CVE-2026-20079) · Cisco PSIRT · Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability

Cisco Advance Notification for Publication of September 16, 2026, Security Advisories

On September 16, 2026, the Cisco Product Security Incident Response Team (PSIRT) will publish advisories to disclose security vulnerability information along with fixed software releases for the following Cisco products: BroadWorks CommPilot Application Software Identity Services Engine (ISE) (security hardening release) Nexus Dashboard (security hardening release) Secure Firewall Adaptive Security Appliance (ASA) (security hardening release) Secure Firewall Management Center (FMC) (security…

Cisco US

tg: zranitelnost tg: novinka v produktu

· Cisco PSIRT · Cisco Advance Notification for Publication of September 16, 2026, Security Advisories

CISA Adds Four Known Exploited Vulnerabilities to Catalog

CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-25249 Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability CVE-2026-19490 Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability CVE-2026-87491 Google Chromium V8 Out of Bounds Write Vulnerability CVE-2026-20079 Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel…

KEV ✓ EPSS 0.76 CVE-2025-25249 CVE-2026-19490 CVE-2026-20079 CVE-2026-87491 Fortinet Citrix Google Cisco veřejná správa US

tg: zneužíváno tg: zranitelnost tg: regulace

· CISA Advisories · CISA Adds Four Known Exploited Vulnerabilities to Catalog

SPOJENO PŘES CVE Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability

Classification: Important, Solution: Official Fix, Exploit Maturity: Proof-of-Concept, CVSSv3.1: 7.1, CVEs: CVE-2026-20293, Summary: A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implementation of Cisco UCS Servers and UCS-based appliances could allow an authenticated attacker with valid credentials for a user account with the role of user or admin or an unauthenticated attacker with physical access to an affected device to bypass UEFI Secure Boot validation checks…

EPSS 0.00 CVSS 7.1 CVE-2026-20293 Cisco FI FR US

tg: zranitelnost

· NCSC-FI · Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability · CERT-FR – avis · Vulnérabilité dans les produits Cisco (09 septembre 2026) · Cisco PSIRT · Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability

6

Cisco security advisory (AV26-876)

Serial Number: AV26-876Date: September 3, 2026 As of September 2, 2026, Cisco is affected by vulnerabilities in the following products: Cisco IOS XR Software Multiple versions Cisco Nexus 9000 Series Switches Multiple products Cisco Desk Phone 9800 Series and Video Phone 8875 Prior to 5.0(1) IP Phone 7800 and 8800 Prior to 14.4(1)SR3 IP Phone 8845 and 8865 Prior to14.4(1)SR4 Wireless IP Phone 8821 Prior to 11.0(6)SR8 The Cyber Centre encourages users and administrators to review the provided…

Cisco CA

tg: zranitelnost

· Cyber Centre Kanada · Cisco security advisory (AV26-876)

NCSC-2026-0338 [1.00] [M/H] Kwetsbaarheden verholpen in Cisco Nexus 9000 Series, IOS XR Software en Secure Email

Cisco heeft kwetsbaarheden verholpen in Cisco Nexus 9000 Series Switches met Silicon One technologie, Cisco IOS XR Software en Cisco Secure Email. De ernstigste kwetsbaarheid betreft Nexus 9000-switches: als TCP 43210 of 43211 bereikbaar is, kan een aanvaller zonder authenticatie code met rootrechten uitvoeren en de switch laten herstarten. De IOS XR-kwetsbaarheden kunnen, afhankelijk van platform en configuratie, diverse beveiligingsfuncties ondermijnen. De Secure Email-kwetsbaarheden kunnen…

Cisco NL

tg: zranitelnost

· NCSC-NL · NCSC-2026-0338 [1.00] [M/H] Kwetsbaarheden verholpen in Cisco Nexus 9000 Series, IOS XR Software en Secure Email

SPOJENO PŘES CVE Risolte vulnerabilità in prodotti Cisco

Cisco ha rilasciato aggiornamenti di sicurezza che risolvono 9 vulnerabilità, di cui 3 con gravità "critica" e 6 con gravità “alta”, che interessano diversi prodotti.

EPSS 0.01 CVE-2026-20212 CVE-2026-20274 CVE-2026-20275 CVE-2026-20276 CVE-2026-20277 CVE-2026-20278 CVE-2026-20279 CVE-2026-20280 CVE-2026-20281 Cisco IT FR

tg: zranitelnost

· CSIRT Itálie (ACN) · Risolte vulnerabilità in prodotti Cisco · CERT-FR – avis · Multiples vulnérabilités dans les produits Cisco (03 septembre 2026)

SPOJENO PŘES CVE Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities

Classification: Important, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 5.9, CVEs: CVE-2026-20354, CVE-2026-20355, Summary: Multiple vulnerabilities in the Secure/Multipurpose Internet Mail Extensions (S/MIME) decryption functionality of Cisco Secure Email could allow an unauthenticated, remote attacker to recover plain text from encrypted email messages. These vulnerabilities are due to insufficient validation of message integrity. An attacker could exploit these…

EPSS 0.00 CVSS 5.9 CVE-2026-20354 CVE-2026-20355 Cisco FI US

tg: zranitelnost

· NCSC-FI · Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities · Cisco PSIRT · Cisco Secure Email Secure/Multipurpose Internet Mail Extensions Ciphertext Decryption Vulnerabilities

SPOJENO PŘES CVE Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability

Classification: Important, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 7.5, CVEs: CVE-2026-20281, Summary: A vulnerability in Cisco Desk Phone 9800 Series, Cisco IP Phone 7800 and 8800 Series, and Cisco Video Phone 8875 that are running Cisco Session Initiation Protocol (SIP) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper memory management when an affected…

EPSS 0.00 CVSS 7.5 CVE-2026-20281 Cisco FI US

tg: zranitelnost tp: DDoS

· NCSC-FI · Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability · Cisco PSIRT · Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and Video Phone 8875 with SIP Software Denial of Service Vulnerability

SPOJENO PŘES CVE Cisco IOS XR Software Security Hardening Release: September 2026

Classification: Critical, Solution: Official Fix, Exploit Maturity: Not Defined, CVSSv3.1: 9.8, CVEs: CVE-2026-20274, CVE-2026-20275, CVE-2026-20276, CVE-2026-20277, CVE-2026-20278, CVE-2026-20279, CVE-2026-20280, Summary: As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XR Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered…

EPSS 0.01 CVSS 9.8 CVE-2026-20274 CVE-2026-20275 CVE-2026-20276 CVE-2026-20277 CVE-2026-20278 CVE-2026-20279 CVE-2026-20280 Cisco FI US

tg: zranitelnost tg: novinka v produktu

· NCSC-FI · Cisco IOS XR Software Security Hardening Release: September 2026 · Cisco PSIRT · Cisco IOS XR Software Security Hardening Release: September 2026