EN

critical CVE-2026-20306

REST API of Cisco ISE and ISE-PIC: Denial of service and code execution possible

NVD (NIST) reports one vulnerability in REST API of Cisco ISE and ISE-PIC with severity critical. The stated impact is denial of service and code execution. Affected: CVE-2026-20306. The full description, affected versions and recommended action are available from NVD (NIST).

Attack vector
over the network
Access needed
yes, an account is needed
CVSS
9.1

What this means for you

An attacker can run their own code on the system. The first question is reachability from the internet — if it is given, the update belongs ahead of the regular maintenance window.

Original source

NVD (NIST)

Contact

Reputation takes years. Destruction takes seconds.

Talk to us before somebody else does. The first conversation is free and we reply the same business day.