Cyber & AI intelligence
Wasteland.
Briefs indexed3048
Issues31
Published Mondays07:30 CT
⚡ Active KEV CVE-2026-76454 2026-10-07

Cisco License On-Prem Flaw Lets Unauthenticated Attackers Write Arbitrary Files (CVE-2026-76454)

"CVE-2026-76454 is a critical (CVSS 9.1) bug in the Smart Licensing Utility API of Cisco License On-Prem that lets an unauthenticated remote attacker write arbitrary files or cause a denial of service."

CVE-2026-76454 is a critical (CVSS 9.1) bug in the Smart Licensing Utility API of Cisco License On-Prem that lets an unauthenticated remote attacker write arbitrary files or cause a denial of service.

What Is It

The vulnerability is in the Cisco Smart Licensing Utility API of Cisco License On-Prem, which was formerly called Cisco Smart Software Manager On-Prem (SSM On-Prem). According to Cisco, the cause is improper input validation combined with a lack of authentication in the management API. An attacker can exploit it by sending a crafted request to the affected API. If the attack works, the attacker can modify system files or cause a denial-of-service (DoS) condition.

Cisco classifies the weakness as CWE-23 (Relative Path Traversal).

Why It Matters

Cisco PSIRT scores this flaw CVSS 3.1 9.1 (Critical) with the vector AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H:

CISA's SSVC assessment rates the flaw as automatable with total technical impact. That combination makes it a likely target for mass scanning once exploit details come out.

Exploitation status: CVE-2026-76454 is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog. CISA's SSVC record lists exploitation as "none" as of publication (2026-10-07).

What's Vulnerable

Cisco lists the following Cisco License On-Prem versions as affected:

The release lines covered go back to the product's SSM On-Prem days, so older deployments are also affected.

Patch Status

The supplied NVD record does not name fixed versions or workarounds. Because CVE-2026-76454 is not in KEV, CISA has issued no required action or due date. Administrators should:

The NVD record is in "Received" status and has not been fully analyzed yet. Expect updates.

Sources