思科 License On-Prem(原思科 Smart Software Manager On-Prem,简称 SSM On-Prem)的基于 Web 的用户界面中存在一个漏洞,可能导致已认证的攻击者通过远程方式在底层操作系统上执行任意命令。 该漏洞的原因是:向基于 Web 的管理界面提交的配置中,对用户提供的数据缺乏适当的验证。攻击者可以通过在基于 Web 的管理界面中更新配置来利用此漏洞。成功利用该漏洞后,攻击者能够以 root 权限在底层操作系统上执行任意命令。 要利用此漏洞,攻击者必须拥有有效的管理员凭据
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco License On-Prem | 7-202001 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76482 | 10.0 CRITICAL | Cisco License On-Prem Security Hardening Release |
| CVE-2026-76465 | 9.8 CRITICAL | Cisco Nexus 3000 and 9000 Series Switches MPLS OAM Remote Code Execution Vulnerability |
| CVE-2026-76455 | 9.8 CRITICAL | Cisco NX-OS Software Security Hardening Release: October 2026 - Improper Access Control Vu |
| CVE-2026-76471 | 9.8 CRITICAL | Cisco NX-OS Software NX-API Remote Code Execution Vulnerability |
| CVE-2026-76480 | 9.8 CRITICAL | Cisco License On-Prem Security Hardening Release |
| CVE-2026-76500 | 9.8 CRITICAL | Cisco Application Policy Infrastructure Controller Hardening Release: October 2026 - Impro |
| CVE-2026-76501 | 9.8 CRITICAL | Cisco Nexus 9000 Series Switches SRv6 OAM (NGOAM) Remote Code Execution Vulnerability |
| CVE-2026-76498 | 9.8 CRITICAL | Cisco Application Policy Infrastructure Controller Hardening Release: October 2026 - Impro |
| CVE-2026-76499 | 9.8 CRITICAL | Cisco Application Policy Infrastructure Controller Hardening Release: October 2026 - Impro |
| CVE-2026-76486 | 9.8 CRITICAL | Cisco Nexus 3000 and 9000 Series Switches VXLAN OAM (NGOAM) Remote Code Execution Vulnerab |
| CVE-2026-76485 | 9.8 CRITICAL | Cisco Nexus 3000 and 9000 Series Switches VXLAN OAM (NGOAM) Remote Code Execution Vulnerab |
| CVE-2026-76464 | 9.6 CRITICAL | Cisco Meraki Hardening Release October 2026 - Buffer Management Vulnerabilities |
| CVE-2026-76454 | 9.1 CRITICAL | Cisco Smart Software Manager On-Prem Unauthenticated API Vulnerability |
| CVE-2026-76483 | 9.1 CRITICAL | Cisco License On-Prem Security Hardening Release |
| CVE-2026-20328 | 9.1 CRITICAL | Cisco Smart Software Manager On-Prem Arbitrary Account Password Reset Vulnerability |
| CVE-2026-76484 | 8.8 HIGH | Cisco License On-Prem Security Hardening Release |
| CVE-2026-76453 | 8.8 HIGH | Cisco NX-OS Software Security Hardening Release: October 2026 - Improper Neutralization Vu |
| CVE-2026-76463 | 8.8 HIGH | Cisco Meraki Security Hardening Release: October 2026 - Improper Access Control Vulnerabil |
| CVE-2026-76459 | 8.8 HIGH | Cisco NX-OS Software Security Hardening Release: October 2026 - Out-of-bounds Write Vulner |
| CVE-2026-76470 | 8.8 HIGH | Cisco Meraki Hardening Release - Incorrect Calculation Vulnerabilities |
Showing top 20 of 36 CVEs. View all on vendor page → →
No comments yet