Unauthorized Access Vulnerability in Cisco ISE and Cisco ISE-PIC
CVE-2026-76444

5.3MEDIUM

Key Information:

Badges

👾 Exploit Exists

What is CVE-2026-76444?

An unauthorized access vulnerability exists in the Policy Runtime Repository Table (PRRT) service of Cisco ISE and Cisco ISE-PIC. Due to insufficient authentication mechanisms, a remote, unauthenticated attacker can exploit this vulnerability by crafting specific requests to an affected device. This exploitation could potentially grant the attacker access to sensitive configuration information, compromising the integrity and security of the affected systems.

Affected Version(s)

Cisco Identity Services Engine Software 3.4.0

Cisco Identity Services Engine Software 3.4 Patch 1

Cisco Identity Services Engine Software 3.4 Patch 2

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • 👾

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.