Cisco Product Security Update Advisory (CVE-2025-20337)

Cisco Product Security Update Advisory (CVE-2025-20337)

Overview

 

Cisco has released security updates that address vulnerabilities in Cisco products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-20337

 

Cisco ISE Version: 3.3
Cisco ISE Version: 3.4
Cisco ISE-PIC Version: 3.3
Cisco ISE-PIC Version: 3.4

 

 

Resolved Vulnerabilities

 

Unauthenticated remote code execution vulnerability in certain APIs in Cisco ISE and Cisco ISE-PIC (CVE-2025-20337)

 

 

Vulnerability Patches

vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

 

CVE-2025-20337

 

Cisco ISE Version: 3.3 Patch 7
Cisco ISE Version: 3.4 Patch 2
Cisco ISE-PIC Version : 3.3 Patch 7
Cisco ISE-PIC Version : 3.4 Patch 2

 

 

References

 

[1] Cisco Identity Services Engine Unauthenticated Remote Code Execution Vulnerabilities
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-unauth-rce-ZAd2GnJ6