AI analysis
CVE-2026-76483 covers insufficiently protected credentials (CWE-522) in Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), found in a Cisco internal security review and fixed in software-hardening releases. Published CVSS 3.1 scoring is 9.1 (critical) with a network attack vector, low complexity, no privileges required, and no user interaction, so a remote unauthenticated attacker can reach the flaw; the advisory data does not describe the exact credential-handling defect. Successful exploitation is scored as high impact to confidentiality and integrity and no impact to availability, meaning exposed credentials and related license-management data or functions could be disclosed or altered. Organizations that run this on-premises Cisco license appliance are affected; specific version ranges are not stated in the provided data. It is not listed in CISA KEV and no public proof-of-concept is known.
What to do: Install the Cisco software-hardening releases for Cisco License On-Prem (SSM On-Prem) referenced in the Cisco PSIRT advisory for CVE-2026-76483, and confirm the running build against that advisory rather than an assumed version number. Until the update is applied, keep the appliance off the public internet and reachable only from trusted management networks. After patching, rotate credentials that the product stores or uses, and review access logs for unexpected unauthenticated connections.
Affected
| Cisco License On-Prem (formerly Cisco Smart Software Manager On-Prem / SSM On-Prem) | — |
Estimated exposure
—No basis for an estimate.
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Description
As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76483 are related to issues with insufficiently protected credentials that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-522.