chiprook
← Security
SecurityOctober 4, 2026, 19:20

Cisco ISE CVE-2026-76460: CVSS 10.0 auth bypass exploited in the wild

Cisco patched CVE-2026-76460 (CVSS 10.0) in Identity Services Engine and ISE-PIC, where an unauthenticated attacker can reach a management API endpoint and gain root-level command execution. Exploitation was confirmed in the wild and CISA added the flaw to its Known Exploited Vulnerabilities catalog with a September 19, 2026 deadline.

Cisco ISE CVE-2026-76460: CVSS 10.0 auth bypass exploited in the wild
#Cisco#CISA
Read next
Security

Cisco warns of active exploitation of CVSS 9.8 SD-WAN Manager auth bypass

Security

Hunting the Cisco ISE Authentication Bypass: Detection and Response for CVE-2026-76423

Security

Critical GitLab flaw CVSS 10.0 exploited in the wild

Security

Four WordPress plugins hit by CVSS 9.8 auth bypass flaws