← Back

CVE-2026-20190

nvd nist
Published: Jun 17, 2026Modified: Jun 22, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: psirt@cisco.com (Secondary)

Description

A vulnerability in Cisco ISE and ISE-PIC could allow an unauthenticated, remote attacker to view sensitive information on an affected device. This vulnerability is due to improper authorization checks when a resource is accessed. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to gain access to sensitive information, including hashed credentials that could be used in future attacks.

Affected (18)

2 products
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Version 3.4.0
Version 3.4.0 patch1
Version 3.4.0 patch2
Version 3.4.0 patch3
Version 3.4.0 patch4
Version 3.4.0 patch5
Version 3.5.0
Version 3.5.0 patch1
Version 3.5.0 patch2
Configuration B
9 vulnerable

Timeline

No history available yet.