CVE-2025-20286 is a critical vulnerability affecting Cisco Identity Services Engine (ISE) cloud deployments on AWS, Azure, and OCI. It stems from improperly generated, shared credentials across cloud deployments of the same software release and platform, allowing an unauthenticated, remote attacker to gain access. With a CVSS score of 9.8 (Critical), this vulnerability permits access to sensitive data, execution of limited administrative operations, modification of system configurations, and service disruption. While there is no evidence of active exploitation in the wild, public exploit code exists, and the vulnerability has garnered significant community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.1.0CPE matchmatch criteria | cpe:2.3:a:cisco:identity_services_engine:3.1.0:-:*:*:*:*:*:* | ||
3.1.0CPE matchmatch criteria | cpe:2.3:a:cisco:identity_services_engine:3.1.0:patch1:*:*:*:*:*:* | ||
3.1.0CPE matchmatch criteria | cpe:2.3:a:cisco:identity_services_engine:3.1.0:patch10:*:*:*:*:*:* | ||
3.1.0CPE matchmatch criteria | cpe:2.3:a:cisco:identity_services_engine:3.1.0:patch2:*:*:*:*:*:* | ||
3.1.0CPE matchmatch criteria | cpe:2.3:a:cisco:identity_services_engine:3.1.0:patch3:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.