Skip to content
ciscoCVE-2026-20071

A vulnerability in the SSID bring-your-own-device (BYOD) onboarding workflow of Cisco ISE could allow an unauthenticated, adjacent attacker to hijack the onboarding session of 

Low3.8CVE-2026-20071 · Published Sep 16, 2026 · updated Sep 18, 2026

Source advisory

Affected versions

PackageAffectedFixed in
Cisco Identity Services Engine Software
Vendor
<= 3.1.0No fix yet
<= 3.1.0 p1No fix yet
<= 3.1.0 p3No fix yet
<= 3.1.0 p2No fix yet
Details and references

A vulnerability in the SSID bring-your-own-device (BYOD) onboarding workflow of Cisco ISE could allow an unauthenticated, adjacent attacker to hijack the onboarding session of&nbsp;another user and access protected 802.1X networks. &nbsp; This vulnerability is due to insufficient authentication checks that are performed while a user is being onboarded. An attacker could exploit this vulnerability by spoofing the legitimate user and triggering&nbsp;a redirection to the guest web portal. A successful exploit could allow the attacker to take over the user session and gain access to the protected 802.1X network.

CVSS 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
Severity from
no source yet
Weakness
CWE-290

More cisco advisories

All

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.