Exploit released for Cisco SSM bug allowing admin password changes

Share:

Cisco warns that exploit code is now available for a maximum severity vulnerability that lets attackers change any user password on unpatched Cisco Smart Software Manager On-Prem (Cisco SSM On-Prem) license servers.

As a Cisco Smart Licensing component, Cisco SSM On-Prem helps manage accounts and product licenses on an organization’s environment using a dedicated dashboard on the local network.

“The Cisco PSIRT is aware that proof-of-concept exploit code is available for the vulnerability that is described in this advisory,” the company warned on Wednesday.

However, Cisco has yet to find evidence of attackers exploiting this security flaw (tracked as CVE-2024-20419) in the wild.

CVE-2024-20419 is caused by an unverified password change weakness in SSM On-Prem’s authentication system. This weakness lets unauthenticated attackers remotely change any user password (including those used for administrator accounts) without knowing the original credentials.

“This vulnerability is due to improper implementation of the password-change process. An attacker could exploit this vulnerability by sending crafted HTTP requests to an affected device,” Cisco explained in July when it released security updates to address the flaw.

“A successful exploit could allow an attacker to access the web UI or API with the privileges of the compromised user.”

No workarounds are available for impacted systems, and all admins must upgrade to a fixed release to secure vulnerable SSM On-Prem servers.

Last month, Cisco also patched a critical vulnerability that allows attackers to add new users with root privileges and permanently crash Security Email Gateway (SEG) appliances using emails with malicious attachments and fixed an NX-OS zero-day (CVE-2024-20399) that had been exploited in the wild since April to install previously unknown malware as root on vulnerable MDS and Nexus switches.

Today, CISA warned admins to disable the legacy Cisco Smart Install feature after seeing it abused in recent attacks to steal sensitive data like system configuration files.

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
10:06 am, Jan 22, 2025
weather icon 3°C
L: 3° | H: 4°
overcast clouds
Humidity: 91 %
Pressure: 1005 mb
Wind: 2 mph NE
Wind Gust: 3 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 100%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 7:52 am
Sunset: 4:31 pm
DailyHourly
Daily ForecastHourly Forecast
Today 9:00 pm
weather icon
3° | 4°°C 0 mm 0% 4 mph 90 % 1005 mb 0 mm/h
Tomorrow 9:00 pm
weather icon
2° | 8°°C 1 mm 100% 16 mph 91 % 1005 mb 0 mm/h
Fri Jan 24 9:00 pm
weather icon
6° | 10°°C 1 mm 100% 23 mph 90 % 1004 mb 0 mm/h
Sat Jan 25 9:00 pm
weather icon
4° | 6°°C 0.93 mm 93% 9 mph 86 % 1012 mb 0.17 mm/h
Sun Jan 26 9:00 pm
weather icon
5° | 7°°C 0.9 mm 90% 13 mph 89 % 1011 mb 0 mm/h
Today 12:00 pm
weather icon
3° | 4°°C 0 mm 0% 3 mph 90 % 1005 mb 0 mm/h
Today 3:00 pm
weather icon
4° | 5°°C 0 mm 0% 3 mph 79 % 1004 mb 0 mm/h
Today 6:00 pm
weather icon
4° | 4°°C 0 mm 0% 4 mph 85 % 1003 mb 0 mm/h
Today 9:00 pm
weather icon
3° | 3°°C 0 mm 0% 4 mph 89 % 1004 mb 0 mm/h
Tomorrow 12:00 am
weather icon
3° | 3°°C 0 mm 0% 5 mph 88 % 1004 mb 0 mm/h
Tomorrow 3:00 am
weather icon
2° | 2°°C 0 mm 0% 6 mph 89 % 1005 mb 0 mm/h
Tomorrow 6:00 am
weather icon
2° | 2°°C 0 mm 0% 6 mph 91 % 1005 mb 0 mm/h
Tomorrow 9:00 am
weather icon
4° | 4°°C 0 mm 0% 9 mph 90 % 1003 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€100,632.27
2.32%
Ethereum(ETH)
€3,162.27
0.91%
XRP(XRP)
€3.04
2.47%
Tether(USDT)
€0.96
0.10%
Solana(SOL)
€243.45
6.80%
Dogecoin(DOGE)
€0.349311
6.21%
USDC(USDC)
€0.96
0.01%
Shiba Inu(SHIB)
€0.000019
2.08%
Pepe(PEPE)
€0.000015
4.77%
Peanut the Squirrel(PNUT)
€0.351355
1.05%
Scroll to Top