VDB

CNVD-2023-77098

CNVD-2023-77098 PUBLISHED CVSS 10 CRITICAL

Cisco IOS XE是美国思科(Cisco)公司的一套为其网络设备开发的操作系统。Web UI为IOS XE软件的一项功能,旨在简化部署、管理过程,提升用户体验。 Cisco IOS XE Software web UI权限提升漏洞,攻击者可利用该漏洞获取管理员权限,控制路由器。

Risk Scores

CVSS v3.1
10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Affected Products

VendorProductVersions
CiscoCisco IOS XE Software16.1.1, 16.1.2, 16.1.3

Timeline

  • Oct 16, 2023 CVE Published
  • Oct 16, 2023 PoC Published
  • Oct 17, 2023 PoC Published
  • Oct 17, 2023 PoC Published
  • Oct 18, 2023 PoC Published
  • Nov 8, 2023 PoC Published
  • Nov 8, 2023 PoC Published
  • Oct 14, 2024 PoC Published
  • Oct 24, 2024 PoC Published
  • Oct 25, 2024 PoC Published
  • Oct 26, 2024 PoC Published
  • Oct 27, 2024 PoC Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›