critical Known exploitedREV. 01

CVE-2026-76460Cisco Identity Services Engine — Authentication Bypass

A programming interface on Cisco Identity Services Engine does not properly check who is calling it. Anyone who can reach the device over the network can send a crafted request and get in without logging in, skipping the web management interface entirely.

YOUR NEXT MOVE

Apply Cisco's advisory mitigations for Identity Services Engine now, restrict the management interface to trusted networks, and review access logs for unexpected requests.

Read the risk

THE VITAL STATS
CVSS score
10.0/ 10
CVSS v3.1
EPSS probability
1%
Likelihood of exploitation
Attack complexity
Low
Conditions needed to exploit
Known exploited
Yes — CISA KEV
CVE published
2026-09-16
Added to KEV
2026-09-16
Exploit published
Not recorded
Confidence
medium
Kill chain
initial access
MITRE ATT&CK
T1190, T1078
Severity
critical

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Attacker needsNetwork access to the device's management interface; no account or user interaction needed

Behind the card

3 REFERENCES
Field-level provenanceTRACE THE SOURCES +

Which source supports each field, when it was retrieved, and who extracted it.

FieldsSourceRetrievedExtractorConfidence
cvss, exploitation.attack_complexity, exploitation.exploit_available, references, published_atnvd.nist.gov2026-09-20scrty-crds-pipeline/0.1high
exploitation.known_exploited, exploitation.kev_addedcisa.gov2026-09-20scrty-crds-pipeline/0.1high
epssapi.first.org2026-09-20scrty-crds-pipeline/0.1high
title, summary, severity, remediation, mitre_attack, kill_chain, recommended_action, confidence, tags, exploitation.prerequisitesnvd.nist.gov2026-09-20claude-codehigh
exploitation.prerequisitesnvd.nist.gov2026-09-20humanhigh

Printing history

THE RECORD
  1. r1Initial base card

First printing. This card has not been reprinted since publication.

crds:cve-2026-76460 · CRDS 0.1 · Issued 2026-09-20