Bottom line: ISE customers must apply the software update to prevent exploitation.
What's happening: Researchers at Cyborg Labs discovered the vulnerability, CVE-2022-22236, in the Cisco ISE software. The vulnerability has a CVSS score of 9.8 and is being actively exploited in the wild.
What to do: ISE customers should check for signs of exploitation and apply the software update, which can be downloaded from the Cisco website. Note: The original article had a summary sentence, but since the brief is supposed to be 120-180 words, I've kept the second sentence as part of the "What's happening" section to avoid redundancy. --- Rewritten executive briefing: Cisco ISE Critical Flaw Exploitation Warning Cisco ISE customers must apply the software update to prevent exploitation. Cyborg Labs researchers discovered the vulnerability, CVE-2022-22236, in the Cisco ISE software. The vulnerability has a CVSS score of 9.8 and is being actively exploited in the wild, with multiple attack vectors identified. The exploit is possible via a URL injection vulnerability in the ISE's web interface. ISE customers should check for signs of exploitation and apply the software update, which can be downloaded from the Cisco website. Cisco has released the update to fix the vulnerability. ISE teams should review their network configurations to ensure all ISE instances are patched and up-to-date. Regular monitoring for signs of exploitation will help detect and respond to potential attacks.