← nejvýznamnější zprávy · všechny zprávy

poslední zpráva

SPOJENO AI EPSS 0.00

Cisco warns of critical flaws allowing Nexus switch takeover

Cisco released security advisories for five critical vulnerabilities in its NX-OS data center network operating system that could be exploited to run arbitrary code with root privileges on Nexus switches. [...]

Číst originál na BleepingComputer →

2 zprávy z 2 zdrojů · první CZ · EN/orig

Cisco US

tg: zranitelnost

CVE v události 1

CVEhodnoceníKEVEPSS
CVE-2026-76465 9.8 3.1 · cisco – 0.00

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.

Tahle CVE jsem vytáhl z širšího textu článku: CVE-2026-76471, CVE-2026-76480, CVE-2026-76482, CVE-2026-76483, CVE-2026-76484, CVE-2026-76485, CVE-2026-76486, CVE-2026-76501. Neukazuju u nich proto fakta z katalogů výše, a to preventivně, protože článek se na ně mohl jen odkazovat, třeba jako na starší kauzu.

Jak se o tom psalo 2

  1. · BleepingComputer US nadpis události

    Cisco warns of critical flaws allowing Nexus switch takeover

    Cisco released security advisories for five critical vulnerabilities in its NX-OS data center network operating system that could be exploited to run arbitrary code with root privileges on Nexus switches. [...]

  2. · Cisco PSIRT US

    Cisco Nexus 3000 and 9000 Series Switches MPLS OAM Remote Code Execution Vulnerability

    A vulnerability in the MPLS Operation, Administration, and Maintenance (OAM) feature of Cisco NX-OS Software for Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper validation when an affected device is processing an MPLS echo-request packet. An attacker could exploit this…