CVE-2020-3141: Cisco IOS XE Software Privilege Escalation Vulnerabilities
Multiple vulnerabilities in the web management framework of Cisco IOS XE Software could allow an authenticated, remote attacker with read-only privileges to elevate privileges to the level of an Administrator user on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-3141?
CVE-2020-3141 has a severity rating of high due to its potential for privilege escalation.
How do I fix CVE-2020-3141?
To fix CVE-2020-3141, upgrade the Cisco IOS XE software to the patched versions mentioned in Cisco's advisory.
What systems are affected by CVE-2020-3141?
CVE-2020-3141 affects Cisco IOS XE software versions 16.9.4, 17.2.1, 17.3, and 17.4.1.
Can CVE-2020-3141 be exploited remotely?
Yes, CVE-2020-3141 can be exploited by authenticated remote attackers with read-only privileges.
What type of vulnerability is CVE-2020-3141?
CVE-2020-3141 is classified as a privilege escalation vulnerability.