📦 Nx Os

by Cisco

🔍 What is Nx Os?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-1361

CRITICAL CVSS 9.8 Feb 24, 2021

This critical vulnerability allows unauthenticated remote attackers to create, delete, or overwrite arbitrary files with root privileges on affected Cisco Nexus switches. Attackers can exploit this by...

CVE-2024-20321

HIGH CVSS 8.6 Feb 29, 2024

This vulnerability in Cisco NX-OS Software allows unauthenticated remote attackers to cause denial of service by flooding eBGP traffic, which can drop BGP neighbor sessions and disrupt network routing...

CVE-2023-44487

HIGH CVSS 7.5 Oct 10, 2023

CVE-2023-44487 is an HTTP/2 protocol vulnerability that allows attackers to cause denial of service by rapidly resetting streams, consuming server resources. This affects any system using HTTP/2, incl...

CVE-2023-20168

HIGH CVSS 7.1 Aug 23, 2023

An unauthenticated local attacker can cause Cisco NX-OS devices to crash and reload by entering a crafted string at the login prompt when TACACS+ or RADIUS remote authentication is configured with the...

CVE-2023-20089

HIGH CVSS 7.4 Feb 23, 2023

An unauthenticated attacker on the same network segment can send crafted LLDP packets to Cisco Nexus 9000 ACI switches, causing a memory leak that leads to device reload and denial of service. This af...

CVE-2022-20623

HIGH CVSS 8.6 Feb 23, 2022

This vulnerability allows unauthenticated remote attackers to cause BFD traffic to be dropped on affected Cisco Nexus 9000 Series switches by sending crafted traffic. This leads to BFD session flaps, ...

CVE-2022-20650

HIGH CVSS 8.8 Feb 23, 2022

This vulnerability allows authenticated remote attackers to execute arbitrary commands with root privileges on Cisco NX-OS devices by sending crafted HTTP POST requests to the NX-API. It affects Cisco...

CVE-2021-34714

HIGH CVSS 7.4 Sep 23, 2021

This vulnerability allows an unauthenticated attacker on the same network segment to send specially crafted UDLD packets to Cisco networking devices, causing them to reload and creating a denial of se...

CVE-2021-1586

HIGH CVSS 8.6 Aug 25, 2021

This vulnerability allows unauthenticated remote attackers to cause denial of service by sending crafted TCP traffic to specific ports on Cisco Nexus 9000 Series Fabric Switches in ACI mode configured...

CVE-2021-1588

HIGH CVSS 8.6 Aug 25, 2021

An unauthenticated remote attacker can send malicious MPLS echo packets to cause a denial of service on vulnerable Cisco NX-OS devices. This vulnerability affects Cisco Nexus switches and MDS switches...

CVE-2024-20286

MEDIUM CVSS 5.3 Aug 28, 2024

This CVE describes a Python sandbox escape vulnerability in Cisco NX-OS Software that allows authenticated local attackers with Python execution privileges to break out of the restricted Python enviro...

CVE-2024-20284

MEDIUM CVSS 5.3 Aug 28, 2024

This vulnerability allows authenticated local attackers with Python execution privileges on Cisco NX-OS devices to escape the Python sandbox and execute arbitrary commands on the underlying operating ...

CVE-2024-20399

MEDIUM CVSS 6.0 Jul 1, 2024

This vulnerability allows authenticated users with Administrator credentials to execute arbitrary commands as root on Cisco NX-OS devices through command injection in specific CLI commands. It affects...