Cisco Nexus 9000 Series Switch Remote Code Execution Vulnerability - 20260904001¶
Overview¶
The WASOC has been made aware of a vulnerability in Cisco Nexus 9000 Series Switches that could allow an unauthenticated, remote attacker to execute code with root privileges.
A successful exploit of the vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an attacker to connect to an affected device and send crafted input that could be executed as code with root privileges. Cisco has released software updates that address this vulnerability and is urging affected organisations to apply the available patches.
What is vulnerable?¶
| Product(s) Affected | Version(s) | CVE | CVSS | Severity |
|---|---|---|---|---|
| Cisco Nexus 9000 Series Switch models: N9324C-SE1U N9348Y2C6D-SE1U N9364E-SG2-O N9364E-SG2-Q N9396T12C-SE1 N9348Y12C-SE1 N9396Y12C-SE1 N9336C-SE1 N9K-C9804 N9K-C9808 |
Please see CVE link for affected versions and Vendor link for the Fixed Software checker | CVE-2026-20212 | 9.8 | Critical |
What has been observed?¶
The WASOC has not received any reports of exploitation of this vulnerability on Western Australian Government networks at the time of writing.
Recommendation¶
The WASOC recommends administrators apply the solutions as per vendor instructions to all affected devices within expected timeframes (refer Patch Management):