Known vulnerabilities in Cisco Identity Services Engine (ISE) - page 4

Software CPE: cpe:2.3:a:cisco_systems:cisco_identity_services_engine:*:*:*:*:*:*:*:*
Total vulnerabilities: 173
Public exploits: 4
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Cisco Identity Services Engine (ISE) Cisco Identity Services Engine (ISE) is affected by 173 known vulnerabilities: 3 critical, 3 high, 34 medium, 133 low Critical High Medium Low

Vulnerabilities (173)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU83239 - Unrestricted Upload of File with Dangerous Type
CVE-2023-20272
CWE-434 Low
No
No
3.0p8, 3.1P5 17.11.2023 SB2023111723
#VU83238 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2023-20208
CWE-79 Low
No
No
3.0p8, 3.1p6, 3.2P1 17.11.2023 SB2023111722
#VU82707 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-20175
CWE-78 Low
No
No
3.2P1 03.11.2023 SB2023110323
#VU82706 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-20170
CWE-78 Low
No
No
3.2P3 03.11.2023 SB2023110322
#VU82705 - Memory corruption
CVE-2023-20213
CWE-119 Low
No
No
2.7p10, 3.0P7, 3.1p6, 3.2P2 03.11.2023 SB2023110318
#VU82704 - Unrestricted Upload of File with Dangerous Type
CVE-2023-20196
CWE-434 Low
No
No
2.7p10, 3.0p8, 3.1P8, 3.2P3 03.11.2023 SB2023110317
#VU82703 - Unrestricted Upload of File with Dangerous Type
CVE-2023-20195
CWE-434 Low
No
No
2.7p10, 3.0p8, 3.1P8, 3.2P3 03.11.2023 SB2023110317
#VU80517 - Improper Privilege Management
CVE-2023-20194
CWE-269 Medium
No
No
3.0p8, 3.1P8, 3.2P3 07.09.2023 SB2023090711
#VU80516 - Improper Privilege Management
CVE-2023-20193
CWE-269 Low
No
No
- 07.09.2023 SB2023090710
#VU80513 - Improper input validation
CVE-2023-20243
CWE-20 High
No
No
3.1p7, 3.2P3 07.09.2023 SB2023090706
#VU79637 - Improper Access Control
CVE-2023-20111
CWE-284 Medium
No
No
2.7p10, 3.0p8, 3.1p7 16.08.2023 SB20230816277
#VU76299 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-20174
CWE-611 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76298 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2023-20173
CWE-611 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76296 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-20167
CWE-22 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76295 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2023-20166
CWE-22 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76294 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-20164
CWE-78 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76293 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-20163
CWE-78 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76292 - Exposure of sensitive information to an unauthorized actor
CVE-2023-20087
CWE-200 Low
No
No
3.2P2 18.05.2023 SB2023051842
#VU76291 - Exposure of sensitive information to an unauthorized actor
CVE-2023-20077
CWE-200 Low
No
No
3.2P1 18.05.2023 SB2023051841
#VU76288 - Improper Authorization
CVE-2023-20106
CWE-285 Medium
No
No
3.1p6, 3.2P2 18.05.2023 SB2023051840


Showing elements 61 - 80 out of 173