Vulnslist

find the latest Cisco vulnerabilities

CVE-2026-20048

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper processing when parsing SNMP requests. An attacker could exploit this vulnerability by continuously sending SNMP queries to a specific MIB of an affected device. A successful exploit could allow the attacker to cause a kernel panic on the device, resulting in a reload and a DoS condition. Note: This vulnerability affects SNMP versions 1, 2c, and 3. To exploit this vulnerability through SNMPv1 or SNMPv2c, the attacker must have a valid read-only SNMP community string for the affected system. To exploit this vulnerability through SNMPv3, the attacker must have valid SNMP user credentials for the affected system.

SeverityHIGH
CVSS7.7
CWECWE-789
KEV
Published
Modified

Related Products

Product Advisory
Cisco RV Series Routers cisco-sa-nxos-dsnmp-cNN39Uh
Cisco Nexus Dashboard cisco-sa-nxos-dsnmp-cNN39Uh
Cisco NX-OS Software cisco-sa-nxos-dsnmp-cNN39Uh
Cisco Firepower Extensible Operating System (FXOS) cisco-sa-nxos-dsnmp-cNN39Uh
Cisco Catalyst PON Series Switches cisco-sa-nxos-dsnmp-cNN39Uh
Cisco Application Centric Infrastructure Virtual Edge cisco-sa-nxos-dsnmp-cNN39Uh
Cisco Nexus 9000 Series Switches cisco-sa-nxos-dsnmp-cNN39Uh
Cisco NX-OS System Software in ACI Mode cisco-sa-nxos-dsnmp-cNN39Uh