The vulnerabilities tracked by CVE-2026-20287 are related to improper privilege managment issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-269.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 18 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cisco
Cisco identity Services Engine Passive Identity Connector Cisco identity Services Engine Software |
|
| Vendors & Products |
Cisco
Cisco identity Services Engine Passive Identity Connector Cisco identity Services Engine Software |
Fri, 18 Sep 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) engineering teams have conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20287 are related to improper privilege managment issues that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-269. | |
| Title | Cisco Identity Services Engine Hardening Release - Improper Privlege Management Vulnerabilities | |
| Weaknesses | CWE-269 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2026-09-17T11:39:21.841Z
Reserved: 2025-10-08T11:59:15.405Z
Link: CVE-2026-20287
Updated: 2026-09-17T11:31:32.634Z
Status : Awaiting Analysis
Published: 2026-09-16T21:17:09.480
Modified: 2026-09-18T13:28:28.567
Link: CVE-2026-20287
No data.
OpenCVE Enrichment
Updated: 2026-09-18T20:38:23Z