VendorsCisconexus_9364c-gxall versions
Vulnerabilities

Cisco Nexus 9364C-GX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

26CVEs
CVE-2021-1361
Cisco NX-OS Software Unauthenticated Arbitrary File Actions Vulnerability
Published 2021-02-24 · Modified
9.8EPSS 0.016
CVE-2022-20650
Cisco NX-OS Software NX-API Command Injection Vulnerability
Published 2022-02-23 · Modified
9.0EPSS 0.146
CVE-2021-1368
Cisco FXOS and NX-OS Software Unidirectional Link Detection Denial of Service and Arbitrary Code Execution Vulnerability
Published 2021-02-24 · Modified
8.8EPSS 0.005
CVE-2022-20824
Cisco FXOS and NX-OS Software Cisco Discovery Protocol Denial of Service and Arbitrary Code Execution Vulnerability
Published 2022-08-25 · Modified
8.8EPSS 0.004
CVE-2024-20284
Cisco NX-OS Software Python Parser Escape Vulnerability
Published 2024-08-28 · Analyzed
8.8EPSS 0.002
CVE-2024-20286
Cisco NX-OS Software Python Parser Escape Vulnerability
Published 2024-08-28 · Analyzed
8.8EPSS 0.002
CVE-2024-20285
Cisco NX-OS Software Python Parser Escape Vulnerability
Published 2024-08-28 · Analyzed
8.8EPSS 0.002
CVE-2021-1586
Cisco Nexus 9000 Series Fabric Switches ACI Mode Multi-Pod and Multi-Site TCP Denial of Service Vulnerability
Published 2021-08-25 · Modified
8.6EPSS 0.025
CVE-2021-1587
Cisco NX-OS Software VXLAN OAM (NGOAM) Denial of Service Vulnerability
Published 2021-08-25 · Modified
8.6EPSS 0.017
CVE-2021-1230
Cisco Nexus 9000 Series Fabric Switches ACI Mode BGP Route Installation Denial of Service Vulnerability
Published 2021-02-24 · Modified
8.6EPSS 0.015
CVE-2021-1588
Cisco NX-OS Software MPLS OAM Denial of Service Vulnerability
Published 2021-08-25 · Modified
8.6EPSS 0.013
CVE-2022-20823
Cisco NX-OS Software OSPFv3 Denial of Service Vulnerability
Published 2022-08-25 · Modified
8.6EPSS 0.011
CVE-2021-34714
Multiple Cisco Operating Systems Unidirectional Link Detection Denial of Service Vulnerability
Published 2021-09-23 · Modified
7.4EPSS 0.004
CVE-2021-1228
Cisco Nexus 9000 Series Fabric Switches ACI Mode Fabric Infrastructure VLAN Unauthorized Access Vulnerability
Published 2021-02-24 · Modified
7.4EPSS 0.004
CVE-2023-20089
Cisco Nexus 9000 Series Fabric Switches in ACI Mode Link Layer Discovery Protocol Memory Leak Denial of Service Vulnerability
Published 2023-02-23 · Modified
7.4EPSS 0.003
CVE-2021-1584
Cisco Nexus 9000 Series Fabric Switches ACI Mode Privilege Escalation Vulnerability
Published 2021-08-25 · Modified
7.2EPSS 0.004
CVE-2024-20294
A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of specific fields in an LLDP frame. An attacker could exploit this vulnerability by sending a crafted LLDP packet to an interface of an affected device and having an authenticated user retrieve LLDP statistics from the affected device through CLI show commands or Simple Network Management Protocol (SNMP) requests. A successful exploit could allow the attacker to cause the LLDP service to crash and stop running on the affected device. In certain situations, the LLDP crash may result in a reload of the affected device. Note: LLDP is a Layer 2 link protocol. To exploit this vulnerability, an attacker would need to be directly connected to an interface of an affected device, either physically or logically (for example, through a Layer 2 Tunnel configured to transport the LLDP protocol).
Published 2024-02-28 · Analyzed
6.6EPSS 0.003
CVE-2022-20625
Cisco FXOS and NX-OS Software Cisco Discovery Protocol Service Denial of Service Vulnerability
Published 2022-02-23 · Modified
6.1EPSS 0.033
CVE-2021-1229
Cisco NX-OS Software ICMP Version 6 Memory Leak Denial of Service Vulnerability
Published 2021-02-24 · Modified
5.8EPSS 0.014
CVE-2024-20291
A vulnerability in the access control list (ACL) programming for port channel subinterfaces of Cisco Nexus 3000 and 9000 Series Switches in standalone NX-OS mode could allow an unauthenticated, remote attacker to send traffic that should be blocked through an affected device. This vulnerability is due to incorrect hardware programming that occurs when configuration changes are made to port channel member ports. An attacker could exploit this vulnerability by attempting to send traffic through an affected device. A successful exploit could allow the attacker to access network resources that should be protected by an ACL that was applied on port channel subinterfaces.
Published 2024-02-28 · Analyzed
5.8EPSS 0.009
CVE-2023-20115
A vulnerability in the SFTP server implementation for Cisco Nexus 3000 Series Switches and 9000 Series Switches in standalone NX-OS mode could allow an authenticated, remote attacker to download or overwrite files from the underlying operating system of an affected device. This vulnerability is due to a logic error when verifying the user role when an SFTP connection is opened to an affected device. An attacker could exploit this vulnerability by connecting and authenticating via SFTP as a valid, non-administrator user. A successful exploit could allow the attacker to read or overwrite files from the underlying operating system with the privileges of the authenticated user. There are workarounds that address this vulnerability.
Published 2023-08-23 · Modified
5.4EPSS 0.006
CVE-2021-1590
Cisco NX-OS Software system login block-for Denial of Service Vulnerability
Published 2021-08-25 · Modified
5.3EPSS 0.014
CVE-2021-27853
L2 network filtering can be bypassed using stacked VLAN0 and LLC/SNAP headers
Published 2022-09-27 · Modified
4.7EPSS 0.008
CVE-2021-1231
Cisco Nexus 9000 Series Fabric Switches ACI Mode Link Layer Discovery Protocol Port Denial of Service Vulnerability
Published 2021-02-24 · Modified
4.7EPSS 0.003
CVE-2021-1583
Cisco Nexus 9000 Series Fabric Switches ACI Mode Arbitrary File Read Vulnerability
Published 2021-08-25 · Modified
4.4EPSS 0.002
CVE-2021-1367
Cisco NX-OS Software Protocol Independent Multicast Denial of Service Vulnerability
Published 2021-02-24 · Modified
4.3EPSS 0.004