← Back

Wire · regulatory

Cisco patches actively exploited authentication bypass in ISE

Published

18 September 2026

Topic

regulatory

◆ Sectors

CybersecuritySecurity Infrastructure

◆ Source

Read at fieldeffect.com →

◆ Verified

Fusion42 · 18 September 2026 · Fusion42 review

Cisco patched a critical, actively exploited authentication bypass vulnerability (CVE-2026-76460) in its Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) platforms that could grant remote attackers root-level command execution via a management API.

This Wire brief sits within Fusion42's coverage of Cybersecurity and Security Infrastructure, and 4 sources have reported it between 17 Sep 2026 and 18 Sep 2026.

◆ ◆ The Wire takeaway

You need to prioritise updating any Cisco ISE or ISE-PIC deployments immediately to prevent attackers gaining root access through the management API. Restrict management interface access as a quick step to reduce risk while patching.

◆ Coverage

4 sources · first reported 17 Sep 2026 · latest 18 Sep 2026

◆ Related on Wire

◆ Topics

CybersecuritySecurity Infrastructureciscoauthentication-bypasssecurity-patchnetwork-access-controlcve-2026-76460active-exploit