{"id":"CVE-2026-76439","title":"A vulnerability in the endpoint posture status reporting functionality of the guest portal web application of Cisco ISE could allow an unauthenticated, remote attacker to submit forged posture status events into the endpoint posture pipe…","summary":"A vulnerability in the endpoint posture status reporting functionality of the guest portal web application of Cisco ISE could allow an unauthenticated, remote attacker to submit forged posture status events into the endpoint posture pipe…","severity":"medium","cvss":5.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N","cwe":["CWE-306"],"vendor":"Cisco","product":"Cisco Identity Services Engine Software","affected":["identity_services_engine_software 3.1.0","identity_services_engine_software 3.1.0 p1","identity_services_engine_software 3.1.0 p3","identity_services_engine_software 3.1.0 p2","identity_services_engine_software 3.2.0","identity_services_engine_software 3.1.0 p4","identity_services_engine_software 3.1.0 p5","identity_services_engine_software 3.2.0 p1","identity_services_engine_software 3.1.0 p6","identity_services_engine_software 3.2.0 p2","identity_services_engine_software 3.1.0 p7","identity_services_engine_software 3.3.0","identity_services_engine_software 3.2.0 p3","identity_services_engine_software 3.2.0 p4","identity_services_engine_software 3.1.0 p8","identity_services_engine_software 3.2.0 p5","identity_services_engine_software 3.2.0 p6","identity_services_engine_software 3.1.0 p9","identity_services_engine_software 3.3 Patch 2","identity_services_engine_software 3.3 Patch 1","identity_services_engine_software 3.3 Patch 3","identity_services_engine_software 3.4.0","identity_services_engine_software 3.2.0 p7","identity_services_engine_software 3.3 Patch 4","identity_services_engine_software 3.4 Patch 1","identity_services_engine_software 3.1.0 p10","identity_services_engine_software 3.3 Patch 5","identity_services_engine_software 3.3 Patch 6","identity_services_engine_software 3.4 Patch 2","identity_services_engine_software 3.3 Patch 7","identity_services_engine_software 3.4 Patch 3","identity_services_engine_software 3.5.0","identity_services_engine_software 3.4 Patch 4","identity_services_engine_software 3.3 Patch 8","identity_services_engine_software 3.2 Patch 8","identity_services_engine_software 3.5 Patch 1","identity_services_engine_software 3.3 Patch 9","identity_services_engine_software 3.2 Patch 9","identity_services_engine_software 3.4 Patch 5","identity_services_engine_software 3.5 Patch 3","identity_services_engine_software 3.5 Patch 2","identity_services_engine_software 3.3 Patch 10","identity_services_engine_software 3.3 Patch 11","identity_services_engine_software 3.4 Patch 6","identity_services_engine_software 3.2 Patch 10","identity_services_engine_software 3.1.0 p72","identity_services_engine_software 3.1.0 p11","ise_passive_identity_connector 3.2.0","ise_passive_identity_connector 3.1.0","ise_passive_identity_connector 3.3.0"],"published":"2026-09-16","updated":"2026-09-18","sourceUpdated":"2026-09-18T15:17:12.250","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-76439","references":[{"url":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multiauth-bypass-sgD2HbL4","label":"psirt@cisco.com"},{"url":"https://software.cisco.com"}],"tags":["nvd","cve.org","csaf","vendor-advisory","cisco"],"ssvc":{"exploitation":"none","automatable":"yes","technicalImpact":"partial","timestamp":"2026-09-18T14:39:40.548835Z"},"epss":0.00324,"epssPercentile":0.25707,"ingestedAt":"2026-09-16T16:37:52.179Z","slug":"CVE-2026-76439","body":"## Overview\n\nA vulnerability in the endpoint posture status reporting functionality of the guest portal web application of Cisco ISE could allow an unauthenticated, remote attacker to submit forged posture status events into the endpoint posture pipeline.\r\n\r\nThis vulnerability is due to insufficient authentication on an internal interface that is exposed through the guest portal. An attacker could exploit this vulnerability by sending a crafted request to an affected system. A successful exploit could allow the attacker to manipulate the posture status on the affected system.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.\n\n## Vendor advisories\n\n- **cisco-sa-ise-multiauth-bypass-sgD2HbL4** · Cisco · affected: Cisco ISE Passive Identity Connector (4 versions), Cisco Identity Services Engine Software (46 versions) · updated 2026-09-16 · [advisory](https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ise-multiauth-bypass-sgD2HbL4)","depth":"sunlit","depthScore":29,"depthScoreParts":{"impact":29.2,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[]}