Cisco Product Security Update Advisory (CVE-2025-20337)
Overview
Cisco has released security updates that address vulnerabilities in Cisco products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-20337
Cisco ISE Version: 3.3
Cisco ISE Version: 3.4
Cisco ISE-PIC Version: 3.3
Cisco ISE-PIC Version: 3.4
Resolved Vulnerabilities
Unauthenticated remote code execution vulnerability in certain APIs in Cisco ISE and Cisco ISE-PIC (CVE-2025-20337)
Vulnerability Patches
vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-20337
Cisco ISE Version: 3.3 Patch 7
Cisco ISE Version: 3.4 Patch 2
Cisco ISE-PIC Version : 3.3 Patch 7
Cisco ISE-PIC Version : 3.4 Patch 2
References
[1] Cisco Identity Services Engine Unauthenticated Remote Code Execution Vulnerabilities
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-unauth-rce-ZAd2GnJ6