Close Menu
NotesleuNotesleu
    Facebook X (Twitter) Instagram
    NotesleuNotesleu
    • Home
    • General News
    • Cyber Attacks
    • Threats
    • Vulnerabilities
    • Cybersecurity
    • Contact Us
    • More
      • About US
      • Disclaimer
      • Privacy Policy
      • Terms and Conditions
    NotesleuNotesleu
    Home»Threats»Cisco Uncovers Actively Exploited Zero-Day Vulnerabilities in IOS XE, Urges Immediate Action

    Cisco Uncovers Actively Exploited Zero-Day Vulnerabilities in IOS XE, Urges Immediate Action

    By NotesleuNo Comments2 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Reddit Copy Link

    In a startling revelation, Cisco has exposed the presence of two dangerous zero-day vulnerabilities in its IOS XE software – CVE-2023-20198 and CVE-2023-20273. These vulnerabilities have been actively exploited by hackers, allowing them to deploy malicious implants on compromised devices. The CVE-2023-20198 authentication bypass zero-day, disclosed earlier this week, enabled unauthenticated attackers to infiltrate IOS XE devices since September 18, creating unauthorized administrative accounts. Subsequently, the CVE-2023-20273 privilege escalation zero-day was employed to gain root access, granting the hackers complete control over the devices. This control facilitated the execution of arbitrary commands within the system.

    Cisco has swiftly developed fixes for both vulnerabilities and plans to release them via the Cisco Software Download Center starting October 22. The company, however, clarified that a previously mentioned CVE-2021-1435 is not related to these recent activities.

    We discovered over 34.5K #Cisco IOS XE IPs compromised by #CVE-2023-20198 with implants based on the check published by TALOShttps://t.co/cSxMxwVZXe

    — CERT Orange Cyberdefense (@CERTCyberdef) October 18, 2023

    Worryingly, over 40,000 Cisco devices utilizing the vulnerable IOS XE software have already fallen victim to these attacks. Initially estimated at 10,000 devices, this number escalated to 34,500 in just a day, according to reports from VulnCheck and Orange Cyberdefense CERT. Cisco IOS XE devices, including enterprise switches, access points, wireless controllers, as well as industrial, aggregation, and branch routers, are at risk. Disturbingly, Shodan search results reveal that more than 146,000 vulnerable systems are currently exposed to potential attacks.

    While waiting for the official patches, Cisco has issued urgent guidelines to administrators. One immediate measure includes disabling the vulnerable HTTP server feature on all internet-facing systems, which can prevent incoming attacks. Cisco strongly emphasized the importance of these actions, providing detailed instructions in their updated security advisory and Talos blog.

    Moreover, administrators are urged to remain vigilant and look out for any suspicious or newly created user accounts, which could be indicative of malicious activity related to these ongoing attacks. Cisco’s proactive disclosure aims to empower users with the knowledge and tools needed to safeguard their systems, emphasizing the critical importance of immediate action in the face of this escalating threat.

    Found this news interesting? Follow us on Twitter  and Telegram to read more exclusive content we post.

    Post Views: 56
    Featured
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleGoogle Enhances Android Security with Real-Time Code-Level Scanning in Play Protect
    Next Article Indian Authorities Collaborate with Tech Giants in Massive Crackdown on Microsoft and Amazon Tech Support Scams

    Related Posts

    Cyber Attacks December 26, 2025

    2 Million Affected by SQL Injection and XSS Data Breach

    December 26, 2025
    Tech December 26, 2025

    “I Had a Dream” and Generative AI Jailbreaks

    December 26, 2025
    AI December 26, 2025

    Microsoft Unveils Security Copilot Early Access Program, Revolutionizing Threat Response

    December 26, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    About Us
    About Us

    We're your premier source for the latest in AI, cybersecurity, science, and technology. Dedicated to providing clear, thorough, and accurate information, our team brings you insights into the innovations that shape tomorrow. Let's navigate the future together."

    Popular Post

    Complete HTML Handwritten Notes

    NKAbuse Malware Exploits NKN Blockchain for Advanced DDoS Attacks

    Advanced Python Mastery: For the Serious Developer

    Complete C++ Handwritten Notes From Basic to Advanced

    Google Introduces New Features Empowering Users to Manage Online Information

    © 2025 Notesleu. Designed by NIM.

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.