{"id":546,"date":"2025-07-19T01:34:42","date_gmt":"2025-07-18T23:34:42","guid":{"rendered":"https:\/\/blog.digitalonion.ly\/?p=546"},"modified":"2025-07-23T22:05:00","modified_gmt":"2025-07-23T20:05:00","slug":"max-severity-cisco-ise-bug-allows-pre-auth-command-execution-patch-now","status":"publish","type":"post","link":"https:\/\/blog.digitalonion.ly\/?p=546&lang=en","title":{"rendered":"Max severity Cisco ISE bug allows pre-auth command execution, patch now"},"content":{"rendered":"\n<p>A critical&nbsp;vulnerability (CVE-2025-20337) in Cisco&#8217;s&nbsp;Identity Services Engine (ISE) could be exploited to let an unauthenticated attacker&nbsp;store malicious files, execute arbitrary code, or gain root privileges on vulnerable devices. The security issue received the maximum severity rating, 10 out of 10, and is caused by&nbsp;insufficient user-supplied input validation checks. It was discovered by&nbsp;Kentaro Kawane, a researcher at the Japanese cybersecurity service&nbsp;GMO Cybersecurity by Ierae, and reported&nbsp;Trend Micro&#8217;s Zero Day Initiative (ZDI). A remote unauthenticated attacker could leverage it by submitting a specially crafted API request&nbsp; The vulnerability was added via an&nbsp;update to&nbsp;the security bulletin&nbsp;for CVE-2025-20281 and CVE-2025-20282, two&nbsp;similar RCE vulnerabilities&nbsp;that also received the maximum severity score, that impact&nbsp;ISE and ISE-PIC versions 3.4 and 3.3. These vulnerabilities affect Cisco ISE and ISE-PIC releases 3.3 and 3.4, regardless of device configuration,&nbsp;the vendor notes for CVE-2025-20281 and CVE-2025-20337, adding that these vulnerabilities do not affect Cisco ISE and ISE-PIC Release 3.2 or earlier. Any of the three security issues can be exploited independently.<\/p>\n\n\n\n<p>Contact us : <a href=\"tel:00218915579536\u202c\">0915579536\u202c<\/a><\/p>\n\n\n\n<p>Or on the website <a href=\"http:\/\/digitalonion.ly\" target=\"_blank\" rel=\"noreferrer noopener\">digitalonion.ly<\/a><\/p>\n\n\n\n<p><strong>Visit us at our company address: Tripoli \u2013 Andalus Street \u2013 Next to the Iraqi Embassy.<\/strong><\/p>\n\n\n\n<p><a href=\"https:\/\/maps.app.goo.gl\/xtDNpMSSfVe7zC9t9?fbclid=IwZXh0bgNhZW0CMTAAAR0agjJLdY1fw8Svc0z1ODqZbUdA7iBvh0QACYyoRcdYQ4NGTYHbZ6bQGtg_aem_klwdVZms8wjhcVBzxmkYtw\">Company address on the map<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A critical&nbsp;vulnerability (CVE-2025-20337) in Cisco&#8217;s&nbsp;Identity Services Engine (ISE) could be exploited to let an unauthenticated [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":481,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[81],"tags":[],"class_list":["post-546","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security-news"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/blog.digitalonion.ly\/wp-content\/uploads\/2025\/06\/Untitled.jpeg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/posts\/546","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=546"}],"version-history":[{"count":2,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/posts\/546\/revisions"}],"predecessor-version":[{"id":552,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/posts\/546\/revisions\/552"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=\/wp\/v2\/media\/481"}],"wp:attachment":[{"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=546"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=546"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.digitalonion.ly\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=546"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}