Skip to content

security_identifier

CVE-2023-20198

Cisco IOS XE Web UI vulnerability, published in a joint Cisco advisory alongside its companion flaw CVE-2023-20273.

Current clusters

security1 publisher

Salt Typhoon logged into telecom network gear with stolen credentials in all but one case Talos examined

Salt Typhoon used legitimate stolen credentials to reach Cisco devices in every telecom intrusion Cisco Talos investigated but one. It then pulled more logins from weakly encrypted router configs and captured TACACS and RADIUS keys, so credentials stored on network gear are the first exposure for defenders to close.

Reality

Evidence62
Adoption
Insufficient
Hype gap−5
Incentives55
Confidence60