Skip to content

Cisco Nexus 9000 Series Switch Remote Code Execution Vulnerability - 20260904001

Overview

The WASOC has been made aware of a vulnerability in Cisco Nexus 9000 Series Switches that could allow an unauthenticated, remote attacker to execute code with root privileges.

A successful exploit of the vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an attacker to connect to an affected device and send crafted input that could be executed as code with root privileges. Cisco has released software updates that address this vulnerability and is urging affected organisations to apply the available patches.

What is vulnerable?

Product(s) Affected Version(s) CVE CVSS Severity
Cisco Nexus 9000 Series Switch models:
N9324C-SE1U
N9348Y2C6D-SE1U
N9364E-SG2-O
N9364E-SG2-Q
N9396T12C-SE1
N9348Y12C-SE1
N9396Y12C-SE1
N9336C-SE1
N9K-C9804
N9K-C9808
Please see CVE link for affected versions and Vendor link for the Fixed Software checker CVE-2026-20212 9.8 Critical

What has been observed?

The WASOC has not received any reports of exploitation of this vulnerability on Western Australian Government networks at the time of writing.

Recommendation

The WASOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframes (refer Patch Management):