Cisco Security Advisory - Cisco Smart Software Manager On-Prem Privilege Escalation Vulnerability

Started by Netwörkheäd, October 11, 2022, 06:02:44 AM

Previous topic - Next topic

Netwörkheäd

Cisco Smart Software Manager On-Prem Privilege Escalation Vulnerability

A vulnerability in the web-based management interface of Cisco Smart Software Manager On-Prem could allow an authenticated, remote attacker to elevate privileges on an affected system.


This vulnerability is due to inadequate protection of sensitive user information. An attacker could exploit this vulnerability by accessing certain logs on an affected system. A successful exploit could allow the attacker to use the obtained information to elevate privileges to System Admin.


Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.


This advisory is available at the following link:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cssm-priv-esc-SEjz69dv



     
         
Security Impact Rating:  Medium
   
   
       
CVE: CVE-2022-20939
Source: Cisco Smart Software Manager On-Prem Privilege Escalation Vulnerability
Let's not argue. Let's network!