Identity Services Engine

Vendor:

First CVE: Sep 21, 2011 · Active for 14 years

178
Total CVEs
More Total CVEs than 99% of tracked products
11.9
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
6.3
Avg CVSS
Higher Avg CVSS than 27% of tracked products
1.7%
KEV Rate
Higher KEV Rate than 96% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Identity Services Engine over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 21, 2011
14 years ago
Most Recent CVE
Jul 15, 2026
10 days ago

CVE Severity & Scoring

Identity Services Engine178 CVEs
All CVEs352,427 CVEs
LowMediumHighCritical
Attack Vector
Local20 (11.2%)
Network147 (82.6%)
Unknown9 (5.1%)
Physical1 (0.6%)
Adjacent Network1 (0.6%)
Attack Complexity
Low167 (93.8%)
High2 (1.1%)
Unknown9 (5.1%)
User Interaction
None110 (61.8%)
Unknown9 (5.1%)
Required59 (33.1%)
Privileges Required
Low54 (30.3%)
High72 (40.4%)
None43 (24.2%)
Unknown9 (5.1%)

Top CVEs

Signals from CVEs in this product scope (178 CVEs).

178 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect agai
Dec 10, 202110.099YESYES
A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying operating system as roo
Jun 25, 202510.098YESYES
A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying operating system as roo
Jul 16, 202510.092YESNO
A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device.
Apr 15, 20269.945NONO
A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker with valid read-only credentials to obtain sensitive information, change node configurations, a
Feb 5, 20257.245NOYES
A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker to execute arbitrary commands as the root user on an affected device. This vulnerability is
Feb 5, 20257.245NOYES
A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, remote attacker to inject arbitrary commands on the underlying
Jan 20, 20238.844NONO
A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affecte
Apr 15, 20269.942NONO
A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affecte
Apr 15, 20269.941NONO
A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To ex
Jun 17, 20269.140NONO

Exploit Exposure

Signals from CVEs in this product scope (178 CVEs).

CISA KEV
3 CVEs
1.7% of CVEs· 96th percentile
Metasploit
1 CVE
0.6% of CVEs· 96th percentile
Nuclei
2 CVEs
1.1% of CVEs· 96th percentile
ExploitDB
3 CVEs
1.7% of CVEs· 87th percentile

Social Chatter

Signals from CVEs in this product scope (178 CVEs).

Media Mentions

Signals from CVEs in this product scope (178 CVEs).

Top CNAs Publishing CVEs For Identity Services Engine

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
3.5.086.62.5%00
3.4.0346.85.4%21
330016.80.6%00
3.3.0506.76.1%23
3.314.80.3%00
3.2\(0.149\)15.40.7%00
3.2.0406.62.2%02
3.2386.11.4%00
3.1\(0.518\)15.40.7%00
3.1\(0.440\)18.11.4%00
3.1.0266.62.5%02
3.1346.32.0%00
3.0\(0.458\)56.20.7%00
3.0.0486.01.9%00
2.7\(0.999\)15.40.6%00
2.7\(0.903\)56.20.7%00
2.7\(0.356\)105.50.6%00
2.7.0.35636.90.9%00
2.7\(0.207\)55.80.7%00
2.7.0356.02.7%00