Close Menu
NotesleuNotesleu
    Facebook X (Twitter) Instagram
    Tuesday, February 10
    Facebook X (Twitter) Instagram
    NotesleuNotesleu
    • Home
    • General News
    • Cyber Attacks
    • Threats
    • Vulnerabilities
    • Cybersecurity
    • Contact Us
    • More
    NotesleuNotesleu
    Home»Threats»Cisco Uncovers Actively Exploited Zero-Day Vulnerabilities in IOS XE, Urges Immediate Action
    Threats

    Cisco Uncovers Actively Exploited Zero-Day Vulnerabilities in IOS XE, Urges Immediate Action

    By securnerd2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Follow Us
    Google News

    In a startling revelation, Cisco has exposed the presence of two dangerous zero-day vulnerabilities in its IOS XE software – CVE-2023-20198 and CVE-2023-20273. These vulnerabilities have been actively exploited by hackers, allowing them to deploy malicious implants on compromised devices. The CVE-2023-20198 authentication bypass zero-day, disclosed earlier this week, enabled unauthenticated attackers to infiltrate IOS XE devices since September 18, creating unauthorized administrative accounts. Subsequently, the CVE-2023-20273 privilege escalation zero-day was employed to gain root access, granting the hackers complete control over the devices. This control facilitated the execution of arbitrary commands within the system.

    Cisco has swiftly developed fixes for both vulnerabilities and plans to release them via the Cisco Software Download Center starting October 22. The company, however, clarified that a previously mentioned CVE-2021-1435 is not related to these recent activities.

    We discovered over 34.5K #Cisco IOS XE IPs compromised by #CVE-2023-20198 with implants based on the check published by TALOShttps://t.co/cSxMxwVZXe

    — CERT Orange Cyberdefense (@CERTCyberdef) October 18, 2023

    Worryingly, over 40,000 Cisco devices utilizing the vulnerable IOS XE software have already fallen victim to these attacks. Initially estimated at 10,000 devices, this number escalated to 34,500 in just a day, according to reports from VulnCheck and Orange Cyberdefense CERT. Cisco IOS XE devices, including enterprise switches, access points, wireless controllers, as well as industrial, aggregation, and branch routers, are at risk. Disturbingly, Shodan search results reveal that more than 146,000 vulnerable systems are currently exposed to potential attacks.

    While waiting for the official patches, Cisco has issued urgent guidelines to administrators. One immediate measure includes disabling the vulnerable HTTP server feature on all internet-facing systems, which can prevent incoming attacks. Cisco strongly emphasized the importance of these actions, providing detailed instructions in their updated security advisory and Talos blog.

    Moreover, administrators are urged to remain vigilant and look out for any suspicious or newly created user accounts, which could be indicative of malicious activity related to these ongoing attacks. Cisco’s proactive disclosure aims to empower users with the knowledge and tools needed to safeguard their systems, emphasizing the critical importance of immediate action in the face of this escalating threat.

    Found this news interesting? Follow us on Twitter  and Telegram to read more exclusive content we post.

    Post Views: 59

    Related Posts

    • It’s a Zero-day? It’s Malware? No! It’s Username and Password
    • Ransomware Group ALPHV Introduces Data Leak API in a Revamped Extortion Approach
    • Apple set to reveal major AI features and upgrades to Siri at WWDC 2024: All the details
    • Apple Unveils Stricter Guidelines to Curb Data Misuse and Fingerprinting by Developers
    Follow on Google News
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Add A Comment
    Leave A Reply Cancel Reply

    Recent Post

    Complete HTML Handwritten Notes

    July 22, 2024

    Complete C++ Handwritten Notes From Basic to Advanced

    July 21, 2024

    Complete Python Ebook From Basic To Advanced

    July 20, 2024

    Top 7 Open-Source LLMs for 2024 and Their Uses

    July 18, 2024
    About Us
    About Us

    We're your premier source for the latest in AI, cybersecurity, science, and technology. Dedicated to providing clear, thorough, and accurate information, our team brings you insights into the innovations that shape tomorrow. Let's navigate the future together."

    Latest

    Complete HTML Handwritten Notes

    July 22, 2024

    Complete C++ Handwritten Notes From Basic to Advanced

    July 21, 2024

    Complete Python Ebook From Basic To Advanced

    July 20, 2024
    Popular Post

    Microsoft Enhances Windows 11 Security with Kerberos Authentication Over NTLM Protocol

    October 15, 202318 Views

    New JavaScript Malware Targeted 50,000+ Users at Dozens of Banks Worldwide

    December 21, 202337 Views

    Malicious Ads Exploit macOS Users, Unleashing Stealer Malware

    April 1, 202418 Views
    • Contact Us
    • About US
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2026 Notesleu. Designed by NIM.

    Type above and press Enter to search. Press Esc to cancel.