Identity Services Engine
Vendor:
First CVE: Sep 21, 2011 · Active for 14 years
178
Total CVEs
More Total CVEs than 99% of tracked products
11.9
Avg CVEs / Year
Higher CVE frequency than 97% of tracked products
6.3
Avg CVSS
Higher Avg CVSS than 27% of tracked products
1.7%
KEV Rate
Higher KEV Rate than 96% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Identity Services Engine over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 21, 2011
14 years ago
Most Recent CVE
Jul 15, 2026
10 days ago
CVE Severity & Scoring
Identity Services Engine178 CVEs
70%
22%
All CVEs352,427 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local20 (11.2%)
Network147 (82.6%)
Unknown9 (5.1%)
Physical1 (0.6%)
Adjacent Network1 (0.6%)
Attack Complexity
Low167 (93.8%)
High2 (1.1%)
Unknown9 (5.1%)
User Interaction
None110 (61.8%)
Unknown9 (5.1%)
Required59 (33.1%)
Privileges Required
Low54 (30.3%)
High72 (40.4%)
None43 (24.2%)
Unknown9 (5.1%)
Top CVEs
Signals from CVEs in this product scope (178 CVEs).
178 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-44228CRITICAL Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect agai | Dec 10, 2021 | 10.0 | 99 | YES | YES |
CVE-2025-20281CRITICAL A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying operating system as roo | Jun 25, 2025 | 10.0 | 98 | YES | YES |
CVE-2025-20337CRITICAL A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying operating system as roo | Jul 16, 2025 | 10.0 | 92 | YES | NO |
CVE-2026-20147CRITICAL A vulnerability in Cisco ISE and Cisco ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. | Apr 15, 2026 | 9.9 | 45 | NO | NO |
CVE-2025-20125HIGH A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker with valid read-only credentials to obtain sensitive information, change node configurations, a | Feb 5, 2025 | 7.2 | 45 | NO | YES |
CVE-2025-20124HIGH A vulnerability in an API of Cisco ISE could allow an authenticated, remote attacker to execute arbitrary commands as the root user on an affected device.
This vulnerability is | Feb 5, 2025 | 7.2 | 45 | NO | YES |
CVE-2022-20964HIGH A vulnerability in the web-based management interface of Cisco Identity Services Engine could allow an authenticated, remote attacker to inject arbitrary commands on the underlying | Jan 20, 2023 | 8.8 | 44 | NO | NO |
CVE-2026-20180CRITICAL A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affecte | Apr 15, 2026 | 9.9 | 42 | NO | NO |
CVE-2026-20186CRITICAL A vulnerability in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affecte | Apr 15, 2026 | 9.9 | 41 | NO | NO |
CVE-2026-20181CRITICAL A vulnerability in Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected device. To ex | Jun 17, 2026 | 9.1 | 40 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (178 CVEs).
CISA KEV
3 CVEs
1.7% of CVEs· 96th percentile
Metasploit
1 CVE
0.6% of CVEs· 96th percentile
Nuclei
2 CVEs
1.1% of CVEs· 96th percentile
ExploitDB
3 CVEs
1.7% of CVEs· 87th percentile
Social Chatter
Signals from CVEs in this product scope (178 CVEs).
Media Mentions
Signals from CVEs in this product scope (178 CVEs).
Top CNAs Publishing CVEs For Identity Services Engine
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.5.0 | 8 | 6.6 | 2.5% | 0 | 0 |
| 3.4.0 | 34 | 6.8 | 5.4% | 2 | 1 |
| 3300 | 1 | 6.8 | 0.6% | 0 | 0 |
| 3.3.0 | 50 | 6.7 | 6.1% | 2 | 3 |
| 3.3 | 1 | 4.8 | 0.3% | 0 | 0 |
| 3.2\(0.149\) | 1 | 5.4 | 0.7% | 0 | 0 |
| 3.2.0 | 40 | 6.6 | 2.2% | 0 | 2 |
| 3.2 | 38 | 6.1 | 1.4% | 0 | 0 |
| 3.1\(0.518\) | 1 | 5.4 | 0.7% | 0 | 0 |
| 3.1\(0.440\) | 1 | 8.1 | 1.4% | 0 | 0 |
| 3.1.0 | 26 | 6.6 | 2.5% | 0 | 2 |
| 3.1 | 34 | 6.3 | 2.0% | 0 | 0 |
| 3.0\(0.458\) | 5 | 6.2 | 0.7% | 0 | 0 |
| 3.0.0 | 48 | 6.0 | 1.9% | 0 | 0 |
| 2.7\(0.999\) | 1 | 5.4 | 0.6% | 0 | 0 |
| 2.7\(0.903\) | 5 | 6.2 | 0.7% | 0 | 0 |
| 2.7\(0.356\) | 10 | 5.5 | 0.6% | 0 | 0 |
| 2.7.0.356 | 3 | 6.9 | 0.9% | 0 | 0 |
| 2.7\(0.207\) | 5 | 5.8 | 0.7% | 0 | 0 |
| 2.7.0 | 35 | 6.0 | 2.7% | 0 | 0 |