Vulnerabilities · 166 days ago
Cisco Smart Software Manager On-Prem (SSM On-Prem) suffers two distinct vulnerabilities. One allows authenticated users with System User roles to extract session credentials via the web interface and escalate to administrative privileges. The other exposes an internal API service that unauthenticated attackers can exploit to execute arbitrary commands as root on the host system.
These flaws together mean attackers can gain full control either by escalating privileges from a low-level account or by exploiting the unauthenticated API. No workarounds exist; only software updates fully fix both issues. Operators must patch immediately and assume potential compromise of admin credentials and root access. Incident response should include credential rotation and host integrity verification.
1 source covering this story
A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an unauthenticated, remote attacker to execute arbitrary commands on the underlying operating system of an affected SSM On-Prem host.
Cisco Security Advisory: Cisco Smart Software Manager On-Prem Privilege Escalation Vulnerability
A vulnerability in the web interface of Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to elevate privileges on an affected system.
Part of the PlainSec briefing for 2026-04-02