Cisco IOS XE Software Web UI Privilege Escalation (cisco-sa-iosxe-webui-privesc-j22SaA4z)

critical Nessus Plugin ID 183167

Version 1.13

Sep 27, 2024, 3:31 PM

  • IAVM reference

Plugin Feed: 202409271531

Version 1.12

Apr 16, 2024, 4:33 PM

  • Exploit attributes ("Exploit framework core" set to "True")

Plugin Feed: 202404161633

Version 1.11

Feb 22, 2024, 6:43 PM

  • Detection (introduce SMUs as mitigation)

Plugin Feed: 202402221843

Version 1.10

Nov 9, 2023, 5:53 PM

  • Exploit attributes ("Exploit framework metasploit" set to "True")

Plugin Feed: 202311091753

Version 1.9

Nov 6, 2023, 6:46 PM

  • IAVM reference
  • New
  • STIG Severity

Plugin Feed: 202311061846

Version 1.7

Oct 25, 2023, 5:17 PM

  • CVSS metrics ("CVSSv3 score" changed from 9.8 to 10.0. "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H")

Plugin Feed: 202310251717

Version 1.6

Oct 24, 2023, 7:12 PM

  • CISA reference

Plugin Feed: 202310241912

Version 1.5

Oct 24, 2023, 10:10 AM

  • Detection (Added fixed release versions from recently updated Cisco advisory)

Plugin Feed: 202310241010

Version 1.4

Oct 24, 2023, 5:56 AM

  • CISA reference

Plugin Feed: 202310240556

Version 1.3

Oct 20, 2023, 11:26 PM

  • Plugin metadata (Added CVE-2023-20273)

Plugin Feed: 202310202326

Version 1.2

Oct 17, 2023, 11:35 PM

  • CEA reference

Plugin Feed: 202310172335

Version 1.1

Oct 17, 2023, 3:57 AM

  • CISA reference
  • CVSS metrics ("CVSSv3 score" changed from 10.0 to 9.8. "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H" to "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:F/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:F/RL:O/RC:C")
  • CVSSv3 score source (set to "CVE-2023-20198")
  • Exploit attributes ("Exploit available" set to "True". "Exploitability ease" set to "Exploits are available")

Plugin Feed: 202310170357

Version 1.0

Oct 16, 2023, 9:38 PM

  • New

Plugin Feed: 202310162138

* Changelogs are generally available for changes made after Nov 1, 2022