-
Notifications
You must be signed in to change notification settings - Fork 3.4k
[FALSE-NEGATIVE] CVE-2023-20198 Cisco IOS XE RCE #12324
Copy link
Copy link
Closed
Labels
false-negativeNuclei template missing valid resultsNuclei template missing valid results
Description
Template IDs or paths
http/cves/2023/CVE-2023-20198.yamlEnvironment
- OS: Ubuntu 22.04
- Nuclei: v3.4.4
- Go: 1.23.0Steps To Reproduce
- Run template against CVE-2023-20198 vulnerable target on https
- False negative
The issue is most likely caused by the target endpoint on Cisco differing depending whether access is via http or https. I could achieve detection by modifying the target endpoint on the template to /%2577ebui_wsma_https
Relevant dumped responses
no detection (details below)Anything else?
post endpoint modification:
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
false-negativeNuclei template missing valid resultsNuclei template missing valid results

