Lucene search

K
ciscoCiscoCISCO-SA-ONPREM-PRIVESC-TP6UNZOS
HistoryJul 06, 2022 - 4:00 p.m.

Cisco Smart Software Manager On-Prem Denial of Service Vulnerability

2022-07-0616:00:00
tools.cisco.com
26
cisco
smart software manager
denial of service
vulnerability
authentication
remote attacker
dos condition
incorrect handling
device registrations
exploit
software updates

EPSS

0.001

Percentile

44.2%

A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.

This vulnerability is due to incorrect handling of multiple simultaneous device registrations on Cisco SSM On-Prem. An attacker could exploit this vulnerability by sending multiple device registration requests to Cisco SSM On-Prem. A successful exploit could allow the attacker to cause a DoS condition on an affected device.

Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-privesc-tP6uNZOS [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-privesc-tP6uNZOS”]

Affected configurations

Vulners
Node
ciscosmart_software_manager_on-premMatchany
OR
ciscosmart_software_manager_on-premMatchany
VendorProductVersionCPE
ciscosmart_software_manager_on-premanycpe:2.3:a:cisco:smart_software_manager_on-prem:any:*:*:*:*:*:*:*

EPSS

0.001

Percentile

44.2%

Related for CISCO-SA-ONPREM-PRIVESC-TP6UNZOS