Web_Logo
Remote Support
Security Alert: Cisco ISE Zero-Day Under Active Attack
Home » Security Alerts  »  Security Alert: Cisco ISE Zero-Day Under Active Attack

Security Alert: Cisco ISE Zero-Day Under Active Attack

A critical flaw in Cisco's Identity Services Engine (ISE) is being actively exploited by attackers right now, and no workaround exists. If your network uses Cisco ISE for access control, this needs attention today.

  • What it is: An authentication bypass vulnerability (CVE-2026-76460) rated 10 out of 10 for severity, the maximum possible score.
  • Who is affected: Organisations running Cisco Identity Services Engine (ISE) or ISE Passive Identity Connector for network access control.
  • What the risk is: Attackers can bypass the admin login entirely and gain root-level command execution on the device, without needing valid credentials.
  • What to do: Apply Cisco's security update immediately. There is no workaround available, so patching is the only fix.

If you are unsure whether your network uses Cisco ISE, we recommend checking with your IT provider today rather than waiting for the next scheduled maintenance window.