CVE-2023-20033 - CVE House
Back to Database
Status published High CVE-2023-20033

A vulnerability in Cisco IOS XE Software for Cisco Catalyst...

Vulnerability Description

A vulnerability in Cisco IOS XE Software for Cisco Catalyst 3650 and Catalyst 3850 Series Switches could allow an unauthenticated, remote attacker to cause an affected device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to improper resource management when processing traffic that is received on the management interface. An attacker could exploit this vulnerability by sending a high rate of traffic to the management interface. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-20033

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

Cisco IOS XE Software
Vulnerable Versions:
16.3.1, 16.3.2, 16.3.3, 16.3.1a, 16.3.4, 16.3.5, 16.3.5b, 16.3.6, 16.3.7, 16.3.8, 16.3.9, 16.3.10, 16.3.11, 16.4.1, 16.5.1, 16.5.1a, 16.6.1, 16.6.2, 16.6.3, 16.6.4, 16.6.5, 16.6.4a, 16.6.6, 16.6.7, 16.6.8, 16.6.9, 16.6.10, 16.7.1, 16.8.1, 16.8.1a, 16.8.1s, 16.9.1, 16.9.2, 16.9.1s, 16.9.3, 16.9.4, 16.9.3a, 16.9.5, 16.9.6, 16.9.7, 16.9.8, 16.11.1, 16.11.2, 16.11.1s, 16.12.1, 16.12.1s, 16.12.2, 16.12.3, 16.12.8, 16.12.4, 16.12.3s, 16.12.3a, 16.12.5, 16.12.6, 16.12.5b, 16.12.6a, 16.12.7, 16.12.9

Timeline

Official Publish: September 27th, 2023
Last Modified: June 18th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

Weaknesses (CWE)