Tech.Yahoo RCE Vulnerability Discovered in Cisco Nexus 9000 Switches
Article Content
- •CVE-2026-20212 allows unauthenticated RCE on Cisco Nexus 9000 switches.
- •The vulnerability affects multiple product identifiers and is rated CVSS 9.8.
- •A fix is available in NX-OS 10.6(4) and later; workarounds are also provided.
A vulnerability, CVE-2026-20212 (CVSS 9.8), has been identified in Cisco Nexus 9000 Series switches, allowing unauthenticated remote code execution through default TCP ports 43210 and 43211. Disclosed on September 2, 2026, during a TAC support case, the flaw affects specific product identifiers across Smart Switches and the Nexus 9800 chassis line. The vulnerability arises from the S1HAL process binding to an unrestricted IP address, making it exploitable without authentication. Cisco has released a fix in NX-OS version 10.6(4) and later, and provided a workaround to deny traffic to the vulnerable ports. This is the third CVE reported in Cisco's enterprise infrastructure in recent weeks, highlighting a trend of trust-through-defaults failures. Cisco is not aware of any as of the publication date.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Cisco and CVE-2026-20212 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
Which Nexus 9000 models are affected?
Is there a patch available?
What should I do if I can't patch immediately?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited In late September 2026, two critical zero-day vulnerabilities (CVE-2026-88771 and CVE-2026-88772) in Citrix NetScaler ADC and Gateway were actively exploited, allowing remote code execution. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on…
Critical Citrix NetScaler Vulnerabilities Actively Exploited in Finland The National Cyber Security Centre Finland (NCSC-FI) issued an alert regarding critical vulnerabilities in Citrix NetScaler ADC and Gateway products, specifically CVE-2026-88771 and CVE-2026-88772, which are being actively exploited in Finland. These vulnerabilities allow attackers to execute remote code without…