CVE-2025-20131 | Cisco Identity Services Engine Software 2.7.0 p8 up to 3.2.0 p6 GUI access control (cisco-sa-ise-file-upload-qksX6C8g / EUVD-2025-25392)
A vulnerability was found in Cisco Identity Services Engine Software. It has been classified as critical. The affected element is an unknown function of the component GUI. The manipulation leads to improper access controls.
This vulnerability is listed as CVE-2025-20131. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.