CYBER CODE RED

Get real-time updates on Telegram

Verified

CVE-2026-20038: Cisco NX-OS System Software in ACI Mode 15.2(1g), 15.2(2e), 15.2(2f), 15.2(2g), 15.2(2h), 15.2(3f), 15.2(3e)…

Affected technology

Cisco NX-OS System Software in ACI Mode · 15.2(1g), 15.2(2e), 15.2(2f), 15.2(2g), 15.2(2h), 15.2(3f), 15.2(3e), 15.2(3g), 15.2(4d), 15.2(4e), 15.2(5c), 15.2(5d), 16.0(1g), 15.2(5e), 15.2(4f), 15.2(6e), 15.2(6h), 16.0(1j), 15.2(6g), 15.2(7f), 15.2(7g), 16.0(2h), 15.2(8d), 16.0(2j), 15.2(8e), 16.0(3d), 16.0(3e), 15.2(8f), 15.2(8g), 15.3(1d), 15.2(8h), 16.0(4c), 15.3(2a), 15.2(8i), 16.0(5h), 15.3(2b), 16.0(3g), 16.0(5j), 15.3(2c), 16.0(6c), 15.3(2d), 16.1(1f), 16.0(7e), 16.0(8e), 15.3(2e), 16.0(8f), 16.1(2f), 16.1(2g), 15.3(2f), 16.0(9c), 16.1(3f), 16.0(9d), 16.0(6h), 16.0(8h), 16.1(3g), 16.0(9e), 16.1(4h), 16.1(5e), 16.2(1g), 16.0(9f), 16.2(2e)
Cisco

Component: Not specified by the source

Attack conditions (Vendor/CNA, CVSS 3.1): Network (remote) · No privileges required · No user interaction required

What an attacker can do

An unauthenticated, remote attacker could bypass configured EPG contracts. Vendor/CNA’s CVSS 3.1 assessment (base score 5.8/10) rates confidentiality and availability impact as none; integrity impact as low.

Published

CWE
CWE-284
KEV
no

Provenance

Stable permalink: https://cybercodered.org/item/cve-cve-2026-20038.html