Bottom line: Cisco has released patches to fix the max-severity CVE-2023-0422 authentication bypass vulnerability in its ISE platform, which affects an estimated 23% of organizations using the platform.
What's happening: Cisco has released patches for the ISE vulnerability, which was first detected in February 2023, and has been exploited by attackers. The vulnerability is rated as high-severity, with a CVSS score of 9.8, and is due to a hardcoded password that is not properly encrypted.
What to do: Security leaders should download and apply the patches to their ISE platform as soon as possible, using the Cisco ISE command-line interface or the Cisco ISE web interface. They should also monitor the Cisco ISE dashboard for any signs of compromise and configure alerts and notifications to trigger when the system is compromised.