CVE-2023-20172: Cisco Identity Services Engine
Medium severity, CVSS 4.9. EPSS: 0.4% chance of exploitation in the next 30 days.
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated attacker to delete or read arbitrary files on the underlying operating system. To exploit these vulnerabilities, an attacker must have valid credentials on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
Affected products
- Cisco Identity Services Engine: version 3.1 only; version 3.2 only
Published 2023-05-18. Last modified 2026-06-17.