Cisco Nexus 3000 & 9000 Flaw Could Let Attackers Launch DoS Attacks
ID: 2f54d819-19ad-58b1-94c8-5873a0026d10
STIX ID: report--2f54d819-19ad-58b1-94c8-5873a0026d10
Feed Name: Cyber Press
Threat Score
Cisco released an advisory for CVE-2025-20241: a high-severity (CVSS 7.4) Denial of Service in the IS-IS feature on Nexus 3000 and Nexus 9000 switches running NX-OS. An unauthenticated, Layer-2 adjacent attacker could send crafted IS-IS PDUs that trigger an IS-IS process restart and potentially a full device reload, causing service outages; Cisco provides fixed NX-OS updates and recommends enabling IS-IS area authentication, and no public exploits have been observed.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
