Your devices may be impacted by the PSIRT Multiple Vulnerabilities in Cisco IOS XE Software Web UI Feature
Cisco Catalyst Center can help you quickly identify impacted devices and take action.
Below are two methods to scan managed devices:
Advanced Security Advisories
1. Navigate to Menu > Tools > Security Advisories
2. Agree to the Consent to Connect (see banner) to securely share your configurations
3. Select ‘Re-scan Network’
4. Proceed to 'Advisories' tab and identify Advisory ID: cisco-sa-iosxe-webui-privesc-j22SaA4z
Eligibility: Only network devices with SNTC, Solution Support, or Success Track contracts will be scanned. Customers without a contract can begin a free trial to scan all their devices.
Network Reasoner Workflow
1. Update the Machine Reasoning Engine Knowledge Pack to version 2.1.713.210041 or later (see Knowledge Base Update Guideline)
2. Navigate to Menu > Tools > Network Reasoner
3. Select ‘CVE-2023-20198 Vulnerability Check’ workflow
4. Select ‘Run Machine Reasoning’ to begin the scan
5. Click ‘View Details’ and proceed to the 'Conclusions' tab to download the report in a compressed CSV
Eligibility: All customers and devices are eligible.