Denial of Service Vulnerability in Cisco Nexus 9000 Series Fabric Switches
CVE-2026-20048
What is CVE-2026-20048?
A vulnerability exists in the Simple Network Management Protocol (SNMP) subsystem of the Cisco Nexus 9000 Series Fabric Switches operating in ACI mode. This issue allows an authenticated remote attacker to exploit SNMP parsing inadequacies, leading to a denial of service (DoS) condition. By sending a barrage of SNMP requests to a specific Management Information Base (MIB), the attacker can trigger a kernel panic on the device, causing it to reload. The vulnerability impacts SNMP protocols 1, 2c, and 3; exploiting SNMPv1 or SNMPv2c necessitates knowledge of a valid read-only SNMP community string, while exploitation via SNMPv3 requires valid user credentials.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco NX-OS System Software in ACI Mode 15.2(1g)
Cisco NX-OS System Software in ACI Mode 15.2(2e)
Cisco NX-OS System Software in ACI Mode 15.2(2f)
References
CVSS V3.1
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved