
[CIVN-2025-0353] Multiple Vulnerability in CISCO
—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA256
Multiple Vulnerability in CISCO
Indian – Computer Emergency Response Team (https://www.cert-in.org.in)
Severity Rating: MEDIUM
Systems Affected
Cisco ISE and Cisco ISE-PIC
Overview
Multiple vulnerabilities have been reported in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to either disclose sensitive information or conduct a reflected cross-site scripting (XSS) attack.
Target Audience:
All IT administrators and individuals responsible for maintaining and updating in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC).
Risk Assessment:
High risk of data manipulation and service disruption.
Impact Assessment:
Potential impact on confidentiality, integrity, and availability of the system.
Description
1. Cisco ISE Reflected XSS Vulnerability ( CVE-2025-20289 CVE-2025-20303 CVE-2025-20304 )
These vulnerabilities exist due to insufficient validation of user-supplied input by the web-based management interface of an affected system. An attacker could exploit these vulnerabilities by injecting malicious code into specific pages of the interface.
Successful exploitation of these vulnerabilities could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.
2. Cisco ISE Information Disclosure Vulnerability ( CVE-2025-20305 )
A vulnerability exists due to certain files lack proper data protection mechanisms. An attacker could exploit this vulnerability by performing actions where the results should only be viewable to a high-privileged user.
Successful exploitation of this vulnerability could allow the attacker to view passwords that are normally not visible to read-only administrators.
Solution
Apply appropriate updates as mentioned in Cisco Advisory
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multiple-vulns-O9BESWJH
Vendor Information
CISCO
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multiple-vulns-O9BESWJH
References
CISCO
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multiple-vulns-O9BESWJH
CVE Name
CVE-2025-20289
CVE-2025-20303
CVE-2025-20304
CVE-2025-20305
– —
Thanks and Regards,
CERT-In
Incident Response Help Desk
e-mail: incident@cert-in.org.in
Phone: +91-11-22902657
Toll Free Number: 1800-11-4949
Toll Free Fax : 1800-11-6969
Web: http://www.cert-in.org.in
PGP Fingerprint: A768 083E 4475 5725 B81A A379 2156 C0C0 B620 D0B4
PGP Key information:
https://www.cert-in.org.in/s2cMainServlet?pageid=CONTACTUS
Postal address:
Indian Computer Emergency Response Team (CERT-In)
Ministry of Electronics and Information Technology
Government of India
Electronics Niketan
6, C.G.O. Complex
New Delhi-110 003
—–BEGIN PGP SIGNATURE—–
iQIzBAEBCAAdFiEE6r4Iam/Ey0c/KakL3jCgcSdcys8FAmky8CwACgkQ3jCgcSdc
ys+RjA/+JZz0aPAnY7fd3d2Ic5X+i7ta104NBFyZJZXKpat9jt3WQC5ybH7wVxSK
4tJcdH8h9XvBOa21Kvks0eZWpTAwl3N1pqO3e+SEaIwoARqNhkOworP4mbghJlB/
zhHVnxXkYgsbiBNjOhqBKLXn6EIcLNuTwTnx+z++752enX0iFkiHwpulUUrfjpsQ
BlL60IGJTAmoCr6nJbq0vyiVm0jx5f7lSMghasYqsJRdADOaaAea3vueXj24C3rm
2KU2uREe4WmcakdIJzMHf66gLEDiEe6CwA+VUGsetxKtaDMmlhS7EUYRktfnA0/R
O1aEwadGztSRo/6n1Kz1E0rUGJ/RhOTq+Bmonwn73WnbPhYSnGxxSoYKA7OVQbJX
IpFzkTLAtsLbCLN8SEqe8/kMCKLu4shE/Fx9mrZtsWwkSIiRW7iKUiq7oOMDNa8R
SGlCVADf13cXYlc+z8N8KGvmAk8g1CTRPhgUL1yc1yU2nQMFt8DpZ0Ac1vevNNQF
wPFaLGGGEywPsZaBes1LcU3qhvnIGZruYFBKTh0WCH5XvSIpAm6hyvbxtRqHpH5e
H6UpHFncCQ1d8nULk5Ep+KFGloCQS1/TIRQW6ZYbTopChpEVJJxJCQJoSLX7IBRr
apHC2a6YOucZnWKARZWxvvXYRv2NW/eZj7g2BuDDVmA3STUfFCU=
=LWUI
—–END PGP SIGNATURE—–


