Cisco License On-Prem Improper Auth (CWE-306) CVE-2026-76480
CVE-2026-76480 Published on October 7, 2026
Cisco License On-Prem Security Hardening Release
As part of Cisco's ongoing commitment to proactive security and product quality, the engineering team for Cisco License On-Prem, formerly Cisco Smart Software Manager On-Prem (SSM On-Prem), has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities.
The vulnerabilities tracked by CVE-2026-76480 are related to issues with improper authentication that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-306.
Vulnerability Analysis
CVE-2026-76480 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be critical as this vulnerability has a high impact to the confidentiality, integrity and availability of this component.
Weakness Type
Missing Authentication for Critical Function
The software does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.
Affected Versions
Cisco License On-Prem:- Version 7-202001 is affected.
- Version 1.1 is affected.
- Version 6.3.0 is affected.
- Version 8-202004 is affected.
- Version 8-202006 is affected.
- Version 1.2 is affected.
- Version 1.3 is affected.
- Version 8-202012 is affected.
- Version 8-202010 is affected.
- Version 8-202008 is affected.
- Version 9-202201 is affected.
- Version 8-202102 is affected.
- Version 1.4 is affected.
- Version 8-202105 is affected.
- Version 8-202108 is affected.
- Version 8-202112 is affected.
- Version 8-202201 is affected.
- Version 8-202206 is affected.
- Version 8-202212 is affected.
- Version 8-202302 is affected.
- Version 8-202303 is affected.
- Version 8-202304 is affected.
- Version 8-202308 is affected.
- Version 8-202401 is affected.
- Version 8-202404 is affected.
- Version 9-202406 is affected.
- Version 9-202407 is affected.
- Version 9-202410 is affected.
- Version 9-202412 is affected.
- Version 9-202501 is affected.
- Version 9-202502 is affected.
- Version 9-202504 is affected.
- Version 9-202507 is affected.
- Version 9-202510 is affected.
- Version 9-202601 is affected.
- Version 10-202606 is affected.
- Version 10-202608 is affected.