#VU96800 Use of hard-coded credentials in Cisco Smart Licensing Utility - CVE-2024-20439
Published: September 4, 2024 / Updated: March 31, 2025
Cisco Smart Licensing Utility
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain full access to vulnerable system.
The vulnerability exists due to presence of hard-coded credentials in application code. A remote unauthenticated attacker can access the affected system via the API using the hard-coded credentials.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.