CVE-2023-20198

Cisco IOS XE Web UI Privilege Escalation Vulnerability

Description

Cisco IOS XE Web UI contains a privilege escalation vulnerability in the web user interface that could allow a remote, unauthenticated attacker to create an account with privilege level 15 access. The attacker can then use that account to gain control of the affected device.

Severity: CRITICAL

CVSS Score: 10

Vendor: Cisco

Product: IOS XE Web UI

Loading CVE details...