Back to list

Cisco Smart Software Manager On-Prem Privilege Escalation Vulnerability — CISCO-SA-CSSM-PRIV-ESC-XRANOUO8

Cisco · Cisco · CISCO-SA-CSSM-PRIV-ESC-XRANOUO8

ID
CISCO-SA-CSSM-PRIV-ESC-XRANOUO8
Date
Activity
Source
Cisco
Vendor
Cisco
Threat
high

Summary

A vulnerability in the web interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to elevate privileges on an affected system. This vulnerability is due to the improper transmission of sensitive user information. An attacker could exploit this vulnerability by sending a crafted message to an affected Cisco SSM On-Prem host and retrieving session credentials…

Product

Cisco Smart Software Manager On-Prem Privilege Escalation

What to do

General, cautious steps (verify details in the official source):

  • Prioritize patching or mitigation immediately (treat as actively risky).
  • Identify affected product versions in your inventory and verify whether you are impacted.
  • Apply vendor patches/updates or recommended mitigations as soon as available.
  • Read the official advisory for exact affected versions and remediation steps.

Official advisory

Related advisories