Cisco warns of critical Nexus switch vulnerabilities
Cisco has disclosed five critical vulnerabilities in its NX-OS operating system for Nexus 3000 and 9000 Series switches. These flaws could allow attackers to execute arbitrary code with root privileges, crash processes, or cause denial-of-service conditions. The vulnerabilities are tied to specific features like NX-API, Next Generation OAM (NGOAM), and MPLS OAM, which must be active for exploitation. Cisco recommends upgrading to fixed versions, disabling unnecessary features, and applying temporary Live Protect shields as mitigations. Additionally, Cisco released security updates for its License Manager, addressing issues such as missing authentication and code injection.
Read the full article
Continue reading at BleepingComputer →This is an AI-generated summary. Read the original for the full story.