THREAT OPS › Threat News › Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities
Cisco Identity Services Engine SQL and HQL Injection Vulnerabilities
<p>Multiple vulnerabilities in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to conduct SQL or HQL injection attacks on an affected device.</p> <p>These vulnerabilities are due to insufficient validation of user-supplied input to the affected APIs before it is used to build database queries. An attacker could e
MITRE ATT&CK techniques
Indicators of compromise
- 4af8bc6adbe7cb40dc1cdbbb5e961903md5
- CVE-2026-76448cve
- CVE-2026-76449cve
- CVE-2026-76450cve
- CVE-2026-76451cve