Home / Cisco Security / Security Advisories

Cisco Security Advisory

Cisco Identity Services Engine Insecure Java Deserialization and Authorization Bypass Vulnerabilities

Critical
Advisory ID:
cisco-sa-ise-multivuls-FTW9AOXF
First Published:
2025 February 5 16:00 GMT
Last Updated:
2025 February 10 20:23 GMT
Version 1.2:
Workarounds:
No workarounds available
Cisco Bug IDs:
CVE-2025-20124
CVE-2025-20125
CWE-285
CWE-502
CVSS Score:
Base 9.9Click Icon to Copy Verbose Score
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:H/A:H/E:X/RL:X/RC:X
CVE-2025-20124
CVE-2025-20125
CWE-285
CWE-502