Denial of Service Vulnerability in Cisco Nexus 9000 Series Fabric Switches
CVE-2026-20048

7.7HIGH

Key Information:

Vendor

Cisco

Vendor
CVE Published:
25 February 2026

Badges

๐Ÿ‘พ Exploit Exists

What is CVE-2026-20048?

A vulnerability exists in the Simple Network Management Protocol (SNMP) subsystem of the Cisco Nexus 9000 Series Fabric Switches operating in ACI mode. This issue allows an authenticated remote attacker to exploit SNMP parsing inadequacies, leading to a denial of service (DoS) condition. By sending a barrage of SNMP requests to a specific Management Information Base (MIB), the attacker can trigger a kernel panic on the device, causing it to reload. The vulnerability impacts SNMP protocols 1, 2c, and 3; exploiting SNMPv1 or SNMPv2c necessitates knowledge of a valid read-only SNMP community string, while exploitation via SNMPv3 requires valid user credentials.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Cisco NX-OS System Software in ACI Mode 15.2(1g)

Cisco NX-OS System Software in ACI Mode 15.2(2e)

Cisco NX-OS System Software in ACI Mode 15.2(2f)

References

CVSS V3.1

Score:
7.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.