Record summary
A quick snapshot of what this page covers.
Vulnerability status
How serious this vulnerability is and whether it is known to be exploited.
- CVE ID
- CVE-2023-20273
- Vendor/project
- Cisco
- Product
- Cisco IOS XE Web UI
- Vulnerability name
- Cisco IOS XE Web UI Command Injection Vulnerability
- Date added
- 2023-10-23
- Due date
- 2023-10-27
- Known ransomware campaign use
- Unknown
Exploit context
What the vulnerability is about.
Cisco IOS XE contains a command injection vulnerability in the web user interface. When chained with CVE-2023-20198, the attacker can leverage the new local user to elevate privilege to root and write the implant to the file system. Cisco identified CVE-2023-20273 as the vulnerability exploited to deploy the implant. CVE-2021-1435, previously associated with the exploitation events, is no longer believed to be related to this activity.
Source
Where this page information comes from.
Original source
Original source links
Open the public records and source datasets used for this page.