Cisco Zero-Day Flaw Exposes Networks to Unauthorized Access
Cisco has disclosed a critical zero-day vulnerability in its Identity Services Engine (ISE), which affects API endpoint authentication. The bug, CVE-2026-76460, allows an attacker to gain unauthorized access by bypassing web-based management interface controls.
The flaw was disclosed and patched on Wednesday, with the Cybersecurity and Infrastructure Security Agency (CISA) adding it to its Known Exploited Vulnerabilities (KEV) catalog. Cisco also fixed several other vulnerabilities in ISE and ISE Passive Identity Connector (ISE-PIC) that have similar API authentication issues.
Johannes Ullrich, founder of the SANS Internet Storm Center, said the issue is industry-wide: 'Missing authentication for API endpoints is an industry-wide problem. In some cases, APIs that were not directly reachable in the past are exposed, and proper authentication and access control are skipped.'