Cisco License (Smart Software Manager) On-Prem Vulnerabilities
Cisco patched Smart Software Manager On-Prem flaws enabling remote access, data exposure, denial of service, or privilege escalation.
Cisco disclosed multiple vulnerabilities in the web management interface and API of Cisco License On-Prem, formerly Smart Software Manager On-Prem. A remote attacker could gain unauthorized access, read sensitive information, cause a denial of service, or elevate privileges. Cisco released software updates and said no workarounds are available. The excerpt does not name CVE identifiers or report active exploitation.
- Remote attackers could access data, cause denial of service, or escalate privileges.
- Flaws affect the web management interface and API endpoints.
- Cisco released patches and said no workarounds exist.
- The excerpt lists no CVE IDs and does not confirm exploitation.
Multiple vulnerabilities in the web-based management interface and API endpoints of Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), could allow a remote attacker to gain unauthorized access, access sensitive information, cause a denial of service (DoS) condition, or elevate privileges. For more information about these vulnerabilities, see the Details section of this advisory. Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities. This advisory is available at the following…
This source does not provide full text. Read it at sec.cloudapps.cisco.com.