cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
815
Views
17
Helpful
6
Comments

 

The Portuguese version of this Article can be found at: Vulnerabilidade que afeta o Cisco ISE (CVE-2025-20267) . 

 

MarceloMorais_0-1654436644727.png For an offline or printed copy of this document, simply choose ⋮ Options > Printer Friendly Page. You may then Print > Print to PDF or Copy & Paste to any other document format you like.

 

Introduction

Please be aware of the following CVE (Common Vulnerabilities and Exposures) of CVSS (Common Vulnerability Scoring System) Medium :

CVE-2025-20267 of May 21, 2025

described in:

CVE-2025-20267 Cisco Identity Services Stored Cross-Site Scripting Vulnerability

CSCwm43231 Cisco Identity Services Stored Cross-Site Scripting Vulnerability.

 

Summary

A vulnerability in the Web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct Cross-Site Scripting (XSS) attacks against a User of the interface.

 

Workaround

There is no Workaround that will solve this vulnerability !!!

 

Affected Products & Fixed Software

The vulnerability affects Cisco ISE in the following versions:

CVE-2025-20267.png

 

To access the version of Cisco ISE that fixes this CVE:

 

Comments
Renato Guardia
Spotlight
Spotlight

Thanks for Sharing!

@Renato Guardia ,

 always a pleasure !

Martin L
VIP
VIP

thanks for this info!

@Martin L ,

 glad to be helpful !

Parabéns pelo trabalho 

@Adonay dos Anjos ,

 muito obrigado !

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: