{"id":12008,"date":"2026-09-17T08:53:52","date_gmt":"2026-09-17T14:53:52","guid":{"rendered":"https:\/\/beaconlab.us\/publicacion\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/"},"modified":"2026-09-29T13:59:33","modified_gmt":"2026-09-29T19:59:33","slug":"alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460","status":"publish","type":"publicacion","link":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/","title":{"rendered":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">Affected product(s):<\/h2>\n\n<p class=\"wp-block-paragraph\">The vulnerability affects <strong>Cisco ISE<\/strong> and <strong>Cisco ISE\u2011PIC<\/strong>, regardless of device configuration. Cisco has published fixes for the following supported branches:<\/p>\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><tbody><tr><td><strong>Product<\/strong><\/td><td><strong>Affected Branch<\/strong><\/td><td><strong>Minimum Fixed Version<\/strong><\/td><\/tr><tr><td><strong>Cisco Identity Services Engine (ISE)<\/strong><\/td><td>3.1<\/td><td>3.1 Patch 12<\/td><\/tr><tr><td><strong>Cisco Identity Services Engine (ISE)<\/strong><\/td><td>3.2<\/td><td>3.2 Patch 11<\/td><\/tr><tr><td><strong>Cisco Identity Services Engine (ISE)<\/strong><\/td><td>3.3<\/td><td>3.3 Patch 12<\/td><\/tr><tr><td><strong>Cisco Identity Services Engine (ISE)<\/strong><\/td><td>3.4<\/td><td>3.4 Patch 7<\/td><\/tr><tr><td><strong>Cisco Identity Services Engine (ISE)<\/strong><\/td><td>3.5 \/ 3.5.3<\/td><td>3.5 Patch 4<\/td><\/tr><tr><td><strong>Cisco ISE Passive Identity Connector (ISE\u2011PIC)<\/strong><\/td><td>Supported vulnerable versions<\/td><td>Apply the equivalent patch for the deployed branch<\/td><\/tr><\/tbody><\/table><\/figure>\n\n<p class=\"has-small-font-size wp-block-paragraph\">*Cisco ISE Software Release 3.0 has reached <strong>end of software maintenance<\/strong>, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to a supported release as a priority.<\/p>\n\n<h2 class=\"wp-block-heading\">Description<\/h2>\n\n<p class=\"wp-block-paragraph\">A <strong>critical<\/strong> authentication bypass vulnerability has been published in Cisco Identity Services Engine (<strong>ISE<\/strong>) and Cisco ISE Passive Identity Connector (<strong>ISE\u2011PIC<\/strong>), identified as <strong>CVE\u20112026\u201176460<\/strong> with a <strong>CVSS 10.0<\/strong> score. It allows an unauthenticated remote attacker to send a specially crafted request to an affected API endpoint, bypass authentication on the administration web interface, and obtain unauthorized access to the device. Cisco confirmed that the vulnerability is being <strong>actively exploited.<\/strong><\/p>\n\n<p class=\"wp-block-paragraph\">Since ISE typically acts as a central component for network access control, authentication, and identity policies, a compromise can affect identity management, user and device access to the network, and the organization&#8217;s security posture. It is recommended to update all affected ISE\/ISE\u2011PIC nodes with maximum priority and perform a compromise review.<\/p>\n\n<p class=\"wp-block-paragraph\">Cisco PSIRT confirmed awareness of active exploitation in real environments, although it has not published details about the responsible actor, the exact attack method, or the affected organizations.<\/p>\n\n<p class=\"wp-block-paragraph\">Cisco recommends reviewing the ISE access.log file for suspicious usernames, in particular the dummyuser. In distributed deployment environments, the review must be performed on <strong>each node<\/strong> of ISE\/ISE\u2011PIC.bleepingcomputer+1<\/p>\n\n<p class=\"wp-block-paragraph\">Run the following command on each node:<\/p>\n\n<p class=\"wp-block-paragraph\">admin#show logging application ise-kong\/access.log | include dummyuser<\/p>\n\n<p class=\"wp-block-paragraph\">The presence of entries related to dummyuser in the output should be treated as an <strong>indicator of potential malicious activity<\/strong> and requires immediate investigation.<\/p>\n\n<p class=\"wp-block-paragraph\">Additionally, it is recommended to investigate:<\/p>\n\n<ul class=\"wp-block-list\">\n<li>Unusual logins, API sessions, and administrative changes.<\/li>\n\n\n\n<li>Accounts, roles, or privileges created or modified outside of maintenance windows.<\/li>\n\n\n\n<li>Unexpected changes in authentication, authorization, posture policies, endpoint profiles, <em>network device groups<\/em>, or integrations.<\/li>\n\n\n\n<li>Anomalous outbound network connections from ISE\/ISE\u2011PIC nodes.<\/li>\n\n\n\n<li>Unauthorized processes, services, scheduled tasks, files, or binaries, considering possible root access.<\/li>\n\n\n\n<li>Unexpected differences between the current configuration and backups\/approved configurations.<\/li>\n<\/ul>\n\n<h2 class=\"wp-block-heading\">Solution<\/h2>\n\n<p class=\"wp-block-paragraph\"><strong>Cisco updates<\/strong> for CVE\u20112026\u201176460 must be <strong>immediately applied<\/strong> on all ISE and ISE\u2011PIC nodes. Prioritize administration nodes, <em>Policy Administration Nodes<\/em> (PAN), nodes exposed or reachable from VPN, user networks, branch offices, third-party environments, and untrusted segments.<\/p>\n\n<p class=\"wp-block-paragraph\"><strong>Upgrade to the minimum fixed version for each branch<\/strong>: 3.1 Patch 12, 3.2 Patch 11, 3.3 Patch 12, 3.4 Patch 7, or 3.5 Patch 4. For unsupported branches, migrate to a supported release that includes the fix.<\/p>\n\n<p class=\"wp-block-paragraph\">Below we share helpful links for the upgrade process:<\/p>\n\n<ul class=\"wp-block-list\">\n<li><strong>Official Cisco ISE Upgrade Guide (Upgrade Journey):<\/strong><br \/><a href=\"https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/upgrade_guide\/b_ise_upgrade_journey.html\" target=\"_blank\" rel=\"noopener\">Cisco Identity Services Engine Upgrade Journey<\/a><br \/>This guide centralizes planning, compatibility, backups, node upgrade, and application of <em>patches<\/em> for ISE.<\/li>\n<\/ul>\n\n<ul class=\"wp-block-list\">\n<li><strong>Cisco ISE 3.5 Installation and Maintenance Guide:<\/strong><br \/><a href=\"https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/3-5\/install_guide\/b_ise_Installation_Guide_35\/g_systemrequirements.html\" target=\"_blank\" rel=\"noopener\">Cisco ISE Installation Guide, Release 3.5<\/a><br \/>Includes requirements, maintenance tasks, and considerations for appliance or virtual machine installations.<\/li>\n<\/ul>\n\n<ul class=\"wp-block-list\">\n<li><strong>Upgrade\/Patch history verification:<\/strong><br \/><a href=\"https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/3-5\/install_guide\/b_ise_Installation_Guide_35\/g_maintenancetasks\/t_viewinstallupgradehistory.html\" target=\"_blank\" rel=\"noopener\">View installation and upgrade history \u2014 Cisco ISE<\/a><br \/>Cisco indicates using the show version history command from the ISE CLI to review installations, upgrades, uninstalls, and applied <em>patches<\/em>.<\/li>\n<\/ul>\n\n<ul class=\"wp-block-list\">\n<li><strong>Official Advisory for CVE\u20112026\u201176460:<\/strong><br \/><a href=\"https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-ISE-ABP-VNSW7Tn5\" target=\"_blank\" rel=\"noopener\">Cisco PSIRT \u2014 Cisco Identity Services Engine Authentication Bypass Vulnerability<\/a><br \/>Includes fixed versions, <em>hardening<\/em> instructions, and the required security <em>patches<\/em> to remediate the vulnerability.<\/li>\n<\/ul>\n\n<h2 class=\"wp-block-heading\">Additional information:<\/h2>\n\n<ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-ISE-ABP-VNSW7Tn5\" target=\"_blank\" rel=\"noopener\">https:\/\/sec.cloudapps.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-ISE-ABP-VNSW7Tn5<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/upgrade_guide\/b_ise_upgrade_journey.html\" target=\"_blank\" rel=\"noopener\">https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/upgrade_guide\/b_ise_upgrade_journey.html<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/3-5\/install_guide\/b_ise_Installation_Guide_35\/g_systemrequirements.html\" target=\"_blank\" rel=\"noopener\">https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/3-5\/install_guide\/b_ise_Installation_Guide_35\/g_systemrequirements.html<\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/3-5\/install_guide\/b_ise_Installation_Guide_35\/g_maintenancetasks\/t_viewinstallupgradehistory.html\" target=\"_blank\" rel=\"noopener\">https:\/\/www.cisco.com\/c\/en\/us\/td\/docs\/security\/ise\/3-5\/install_guide\/b_ise_Installation_Guide_35\/g_maintenancetasks\/t_viewinstallupgradehistory.html<\/a><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"featured_media":11757,"template":"","class_list":["post-12008","publicacion","type-publicacion","status-publish","has-post-thumbnail","hentry"],"acf":[],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<link rel=\"canonical\" href=\"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"Beacon Lab - CSIRT by Cybolt\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460 - Beacon Lab\" \/>\n\t\t<meta property=\"og:description\" content=\"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png\" \/>\n\t\t<meta property=\"og:image:width\" content=\"771\" \/>\n\t\t<meta property=\"og:image:height\" content=\"603\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-09-17T14:53:52+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-09-29T19:59:33+00:00\" \/>\n\t\t<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n\t\t<meta name=\"twitter:site\" content=\"@BeaconLabMX\" \/>\n\t\t<meta name=\"twitter:title\" content=\"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460 - Beacon Lab\" \/>\n\t\t<meta name=\"twitter:description\" content=\"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to\" \/>\n\t\t<meta name=\"twitter:image\" content=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png\" \/>\n\t\t<script type=\"application\/ld+json\" class=\"aioseo-schema\">\n\t\t\t{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#breadcrumblist\",\"itemListElement\":[{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#listItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#listItem\",\"name\":\"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \\u2014 CVE\\u20112026\\u201176460\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#listItem\",\"position\":2,\"name\":\"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \\u2014 CVE\\u20112026\\u201176460\",\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#listItem\",\"name\":\"Home\"}}]},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#organization\",\"name\":\"Beacon Lab\",\"description\":\"CSIRT by Cybolt\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"telephone\":\"+528007374357\",\"logo\":{\"@type\":\"ImageObject\",\"url\":\"https:\\\/\\\/beaconlab.mx\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/BeaconLab_V2-03.png\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#organizationLogo\"},\"image\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#organizationLogo\"},\"sameAs\":[\"https:\\\/\\\/twitter.com\\\/BeaconLabMX\",\"https:\\\/\\\/www.linkedin.com\\\/showcase\\\/beaconlabmx\"]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#webpage\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/\",\"name\":\"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \\u2014 CVE\\u20112026\\u201176460 - Beacon Lab\",\"description\":\"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to\",\"inLanguage\":\"en-US\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#website\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#breadcrumblist\"},\"image\":{\"@type\":\"ImageObject\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/cisco-ise_1.png\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#mainImage\",\"width\":771,\"height\":603},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\\\/#mainImage\"},\"datePublished\":\"2026-09-17T08:53:52-06:00\",\"dateModified\":\"2026-09-29T13:59:33-06:00\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"name\":\"Beacon Lab\",\"description\":\"CSIRT by Cybolt\",\"inLanguage\":\"en-US\",\"publisher\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#organization\"}}]}\n\t\t<\/script>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460 - Beacon Lab","description":"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to","canonical_url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"BreadcrumbList","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#breadcrumblist","itemListElement":[{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/#listItem","position":1,"name":"Home","item":"https:\/\/beaconlab.us\/en\/","nextItem":{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#listItem","name":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460"}},{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#listItem","position":2,"name":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460","previousItem":{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/#listItem","name":"Home"}}]},{"@type":"Organization","@id":"https:\/\/beaconlab.us\/en\/#organization","name":"Beacon Lab","description":"CSIRT by Cybolt","url":"https:\/\/beaconlab.us\/en\/","telephone":"+528007374357","logo":{"@type":"ImageObject","url":"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#organizationLogo"},"image":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#organizationLogo"},"sameAs":["https:\/\/twitter.com\/BeaconLabMX","https:\/\/www.linkedin.com\/showcase\/beaconlabmx"]},{"@type":"WebPage","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#webpage","url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/","name":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460 - Beacon Lab","description":"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to","inLanguage":"en-US","isPartOf":{"@id":"https:\/\/beaconlab.us\/en\/#website"},"breadcrumb":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#breadcrumblist"},"image":{"@type":"ImageObject","url":"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#mainImage","width":771,"height":603},"primaryImageOfPage":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/#mainImage"},"datePublished":"2026-09-17T08:53:52-06:00","dateModified":"2026-09-29T13:59:33-06:00"},{"@type":"WebSite","@id":"https:\/\/beaconlab.us\/en\/#website","url":"https:\/\/beaconlab.us\/en\/","name":"Beacon Lab","description":"CSIRT by Cybolt","inLanguage":"en-US","publisher":{"@id":"https:\/\/beaconlab.us\/en\/#organization"}}]},"og:locale":"en_US","og:site_name":"Beacon Lab - CSIRT by Cybolt","og:type":"article","og:title":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460 - Beacon Lab","og:description":"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to","og:url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/","og:image":"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png","og:image:secure_url":"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png","og:image:width":771,"og:image:height":603,"article:published_time":"2026-09-17T14:53:52+00:00","article:modified_time":"2026-09-29T19:59:33+00:00","twitter:card":"summary_large_image","twitter:site":"@BeaconLabMX","twitter:title":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460 - Beacon Lab","twitter:description":"Affected product(s): The vulnerability affects Cisco ISE and Cisco ISE\u2011PIC, regardless of device configuration. Cisco has published fixes for the following supported branches: *Cisco ISE Software Release 3.0 has reached end of software maintenance, so it does not have a corrective update for this vulnerability. Teams remaining on that branch should plan an upgrade to","twitter:image":"https:\/\/beaconlab.us\/wp-content\/uploads\/2026\/09\/cisco-ise_1.png"},"aioseo_meta_data":{"post_id":"12008","title":null,"description":null,"keywords":null,"keyphrases":{"focus":{"keyphrase":"","score":0,"analysis":{"keyphraseInTitle":{"score":0,"maxScore":9,"error":1}}},"additional":[]},"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":"","og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"WebPage","isEnabled":true},"graphs":[]},"schema_type":"default","schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":"-1","robots_max_videopreview":"-1","robots_max_imagepreview":"large","priority":null,"frequency":"default","local_seo":null,"breadcrumb_settings":null,"limit_modified_date":false,"ai":{"faqs":[],"keyPoints":[],"schemas":[],"titles":[],"descriptions":[],"socialPosts":{"email":{"subject":"","preview":"","content":""},"linkedin":[],"twitter":[],"facebook":[],"instagram":[]}},"created":"2026-09-29 19:58:46","updated":"2026-09-29 20:56:20","seo_analyzer_scan_date":null,"focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"aioseo_breadcrumb":"<div class=\"aioseo-breadcrumbs\"><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/beaconlab.us\/en\/\" title=\"Home\">Home<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\tAlert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460\n\t\t<\/span><\/div>","aioseo_breadcrumb_json":[{"label":"Home","link":"https:\/\/beaconlab.us\/en\/"},{"label":"Alert 2026-101 Critical Zero-day in Cisco ISE and ISE-PIC \u2014 CVE\u20112026\u201176460","link":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-101-critical-zero-day-in-cisco-ise-and-ise-pic-cve-2026-76460\/"}],"_links":{"self":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/12008","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion"}],"about":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/types\/publicacion"}],"version-history":[{"count":1,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/12008\/revisions"}],"predecessor-version":[{"id":12009,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/12008\/revisions\/12009"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/media\/11757"}],"wp:attachment":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/media?parent=12008"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}