CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-20032: Cisco NX-OS Software 8.2(5), 7.3(5)D1(1), 8.4(2), 8.4(3), 9.2(3), 8.2(1), 7.3(1)D1(1), 9.2(2v), 7.3(0)D1(1)…

Affected technology

Cisco NX-OS Software · 8.2(5), 7.3(5)D1(1), 8.4(2), 8.4(3), 9.2(3), 8.2(1), 7.3(1)D1(1), 9.2(2v), 7.3(0)D1(1), 7.3(4)D1(1), 9.2(1), 9.2(2t), 9.2(3y), 9.3(2), 7.3(1)DY(1), 8.1(1), 8.2(2), 8.3(2), 7.3(2)D1(3a), 9.2(4), 8.1(2), 7.3(3)D1(1), 8.2(3), 8.3(1), 8.4(1), 8.1(1b), 7.3(0)DX(1), 7.3(2)D1(1), 9.3(1), 7.3(2)D1(2), 8.2(4), 7.3(0)DY(1), 9.3(1z), 9.2(2), 8.1(2a), 7.3(2)D1(3), 8.1(1a), 8.4(1a), 9.3(3), 7.3(2)D1(1d), 9.3(4), 7.3(6)D1(1), 8.2(6), 9.3(5), 8.4(2a), 8.4(2b), 8.5(1), 9.3(6), 8.4(4), 7.3(7)D1(1), 8.4(2c), 9.3(5w), 8.2(7), 9.3(7), 9.3(7k), 7.3(8)D1(1), 9.3(7a), 8.2(7a), 9.3(8), 8.4(4a), 8.4(2d), 8.4(5), 8.2(8), 9.3(9), 7.3(9)D1(1), 8.4(6), 8.4(2e), 9.3(10), 9.2(1a), 8.2(9), 10.3(1), 8.4(7), 10.3(2), 8.4(6a), 9.3(11), 10.3(3), 9.4(1), 9.3(2a), 8.4(2f), 8.2(10), 9.3(12), 10.4(1), 8.4(8), 10.3(99w), 10.3(3w), 10.3(99x), 10.3(3o), 8.4(9), 10.3(4), 10.3(3p), 10.3(4a), 9.4(1a), 10.4(2), 10.3(3q), 9.3(13), 8.2(11), 9.4(2), 10.3(5), 10.4(3), 10.3(3x), 10.3(4g), 10.5(1), 8.4(10), 9.4(2a), 10.3(3r), 10.3(6), 9.3(14), 10.4(4), 10.3(4h), 10.5(2), 8.4(11), 9.4(3), 10.3(7), 10.4(5), 10.5(3), 9.3(15), 9.4(3a), 10.4(4g), 10.5(4), 9.4(3b), 8.4(12), 10.6(1), 10.5(3t), 10.3(8), 10.4(6), 10.5(3s), 10.5(3e), 9.4(4), 10.5(3o), 9.3(16), 10.6(1s), 10.6(2), 10.5(3p), 9.4(5), 10.3(9), 10.6(2s), 8.4(13), 10.6(3), 10.4(7), 10.5(5), 9.3(17), 10.6(2n), 10.6(3s)
Cisco

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 3.1): Local · Low privileges required · No user interaction required

What an attacker can do

An authenticated, local attacker with low privileges could escape the Python sandbox and gain unauthorized access to the underlying operating system of an affected device. Vendor/CNA’s CVSS 3.1 assessment (base score 4.4/10) rates confidentiality and integrity impact as low; availability impact as none.

Published

CWE
CWE-653
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-20032.html