Cisco Urges Vigilance After Two Zero-Day Vulnerabilities Disclosed in Quick Succession
Cisco customers are on high alert following the announcement of two zero-day vulnerabilities detected in rapid succession, underscoring a troubling trend in cybersecurity threats. The first vulnerability pertains to the Cisco Identity Services Engine (ISE), which has received a maximum-severity rating and has been actively exploited since June 2025. The second vulnerability involves Cisco email gateways, which were also compromised before the defect was disclosed and patched.
Cisco Identity Services Engine Under Siege
The Cisco Identity Services Engine has been a focal point for cybersecurity concerns, with three actively exploited vulnerabilities emerging since mid-2025. The latest vulnerability adds to the urgency for organizations using Cisco ISE to implement immediate protective measures. Details surrounding the nature of the attacks remain scarce, but the maximum-severity rating indicates significant risk.
Email Gateways Compromised
In addition to the ISE vulnerability, Cisco has also alerted customers about a defect in its email gateways. This vulnerability was confirmed to have been exploited prior to the public disclosure, raising questions about the extent of its impact across the customer base. Cisco has not provided specifics regarding the nature of the attacks or the overall scope, leaving organizations to assess the potential ramifications on their operations.
- Severity ratings: Both vulnerabilities have been rated as maximum severity.
- Number of vulnerabilities: Three vulnerabilities reported for Cisco ISE since June 2025.
- Exploitation timeline: The email gateway defect was exploited before it was disclosed.
These developments highlight a pressing need for organizations using Cisco products to bolster their cybersecurity postures. With the rapid pace of vulnerability exploitation, there is an imperative for ongoing vigilance and prompt action to mitigate potential risks.
As threat actors increasingly target widely-used software, organizations must enhance their incident response strategies and consider proactive measures to safeguard their systems against similar vulnerabilities in the future. The situation sets a challenging precedent for cybersecurity protocols within enterprise environments.
Sources: Cyberscoop, The Hacker News, Help Net Security, and BleepingComputer
Edited by Daniel Vazdar, Editor. How DEFCROS News reports, sources and corrects.