Cisco NX-OS Software Vulnerability Allows Arbitrary Code Execution as Root
CVE-2024-20411
What is CVE-2024-20411?
A vulnerability in Cisco NX-OS Software could allow an authenticated, local attacker with privileges to access the Bash shell to execute arbitrary code as root on an affected device.
This vulnerability is due to insufficient security restrictions when executing commands from the Bash shell. An attacker with privileges to access the Bash shell could exploit this vulnerability by executing a specific crafted command on the underlying operating system. A successful exploit could allow the attacker to execute arbitrary code with the privileges of root.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco NX-OS Software 9.2(3)
Cisco NX-OS Software 7.0(3)I5(2)
Cisco NX-OS Software 6.0(2)A8(7a)
References
CVSS V3.1
Timeline
- 👾
Exploit known to exist
Vulnerability published