logo

Cisco Nexus 3000 & 9000 Flaw Could Let Attackers Launch DoS Attacks

ID: 2f54d819-19ad-58b1-94c8-5873a0026d10

STIX ID: report--2f54d819-19ad-58b1-94c8-5873a0026d10

Feed Name: Cyber Press

Threat Score
65/100

Date Published: 2025-08-28

Date Updated: 2026-04-19

Author: AnuPriya

...
...

Cisco released an advisory for CVE-2025-20241: a high-severity (CVSS 7.4) Denial of Service in the IS-IS feature on Nexus 3000 and Nexus 9000 switches running NX-OS. An unauthenticated, Layer-2 adjacent attacker could send crafted IS-IS PDUs that trigger an IS-IS process restart and potentially a full device reload, causing service outages; Cisco provides fixed NX-OS updates and recommends enabling IS-IS area authentication, and no public exploits have been observed.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.