Vulnslist

find the latest Cisco vulnerabilities

Cisco Smart Software Manager Satellite Static Credential Vulnerability

cisco-sa-cssm-sc-Jd42D4Tq · High · Published · Updated

A vulnerability in Cisco Smart Software Manager Satellite could allow an authenticated, local attacker to access sensitive information on an affected system. The vulnerability is due to insufficient protection of static credentials in the affected software. An attacker could exploit this vulnerability by gaining access to the static credential that is stored on the local device. A successful exploit could allow the attacker to view static credentials, which the attacker could use to carry out further attacks. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cssm-sc-Jd42D4Tq

Workarounds

There are no workarounds that address this vulnerability.

CVEsCVE-2021-1219
Cisco Bug IDsCSCvm42283
CVSS ScoreBase 7.8
Base 7.8 CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:X/RL:X/RC:X
Product Names From Source
Cisco Smart Software Manager On-Prem

Related Products

Product CVE Evidence
Cisco Smart Software Manager On-Prem CVE-2021-1219 Cisco OpenVuln