logo

Cisco IOS XE Privilege Escalation (CVE-2023-20198) – Cato’s analysis and mitigation

ID: c0144010-d7c3-5ad0-92f3-9c47691a2eaa

STIX ID: report--c0144010-d7c3-5ad0-92f3-9c47691a2eaa

Feed Name: Cato Networks

Threat Score
90/100

Date Published: 2023-11-02

Date Updated: 2026-07-23

Author: Vadim Freger

...
...

**Executive Summary:** Cisco published an advisory for a critical (CVSS 10) zero-day vulnerability in IOS XE Web UI (CVE-2023-20198) that was actively exploited to gain unauthenticated administrative access; a follow-on vulnerability (CVE-2023-20273) could be used to escalate to root and install implants. Exploitation occurred prior to available patches, many devices were likely impacted, and Cato deployed IPS signatures and provided mitigation recommendations (disable HTTP/S Web UI access and restrict management access).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.