CVE-2026-20146
MEDIUMDescription
A vulnerability in Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to perform path traversal attacks on the underlying operating system to either read or delete arbitrary files. To exploit this vulnerability, the attacker must have valid administrative credentials. This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected system. A successful exploit could allow the attacker to access sensitive files or delete arbitrary files on the affected system.
Is your site exposed to CVE-2026-20146?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
EPSS — Exploit Prediction
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine_passive_identity_connector |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
| cisco | identity_services_engine |
References
Frequently Asked Questions
What is CVE-2026-20146? +
How severe is CVE-2026-20146? +
What products are affected by CVE-2026-20146? +
How do I check if I'm vulnerable to CVE-2026-20146? +
Related Vulnerabilities
Karmada is a Kubernetes management system that allows users to run cloud-native applications across multiple Kubernetes clusters and clouds. Prior …
Path traversal vulnerability in Gleam's dependency management allows arbitrary directory deletion via malicious build/packages/packages.toml content. Package keys read from build/packages/packages.toml …
Tautulli is a Python based monitoring and tracking tool for Plex Media Server. Prior to version 2.17.1, a path traversal …
Poetry is a dependency manager for Python. Prior to 2.3.4, the extractall() function in src/poetry/utils/helpers.py:410-426 extracts sdist tarballs without path …
Kenik Camera management Panel is vulnerable to Path Traversal vulnerability. An unauthenticated attacker can send GET request with arbitrary file …
Two path traversal vulnerabilities in the Network Installation Service (NIS) of Altium Enterprise Server allow an unauthenticated network attacker to …