Tech.Yahoo Cisco NX-OS Vulnerabilities Enable Unauthenticated RCE Attacks
Article Content
- •Three critical RCE vulnerabilities in Cisco NX-OS disclosed on October 7, 2026.
- •CVE-2026-76485, CVE-2026-76486, and CVE-2026-76501 all have a CVSS score of 9.8.
- •No workarounds are available; affected systems include Nexus 3000 and 9000 switches.
Cisco disclosed three critical vulnerabilities (CVE-2026-76485, CVE-2026-76486, CVE-2026-76501) in its NX-OS software on October 7, 2026, allowing unauthenticated remote code execution across Nexus 3000 and 9000 switches. All three CVEs have a CVSS score of 9.8, indicating a critical severity level. The vulnerabilities stem from stack-based buffer overflows due to improper input validation when the NGOAM feature is enabled. Attackers can exploit these flaws by sending crafted packets to an IP interface on the affected devices. Cisco's advisory states there are no workarounds available, and the vulnerabilities affect NX-OS versions 9.2 through 10.6. The advisory emphasizes that the only requirement for exploitation is having NGOAM enabled. The vulnerabilities are particularly concerning due to their potential for widespread impact on network infrastructure. As of now, there are no reports of in the wild.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2026-76485 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Which versions of NX-OS are affected?
Are these vulnerabilities being exploited?
What should organizations do now?
Continue Reading
Critical Cisco FMC Vulnerabilities Under Active Exploitation Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass authentication and…