CVE-2026-20212
Cisco Nexus 3000 and 9000 Series Switches Silicon One Hardware Abstraction Layer Remote Code Execution Vulnerability
Description
A vulnerability in the Silicon One integration for Cisco Nexus 9000 Series Switches could allow an unauthenticated, remote attacker to execute code with root privileges. This vulnerability exists because TCP ports 43210 and 43211 are accessible in the default Layer 3 (L3) virtual routing and forwarding (VRF). A successful exploit could allow the attacker to connect to an affected device and send crafted input that could be executed as code with root privileges. The exploitation of this vulnerability could also cause the S1HAL process to crash, which could cause the device to reload.
CVSS Vector Breakdown
AV:NAttack VectorAC:LAttack ComplexityPR:NPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Exploit details including PoC links, Metasploit modules, and scanner templates are available after registration.
View exploit detailsReferences
- ⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and Moreen·The Hacker News·
- Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Rooten·The Hacker News· Patch Cisco Nexus 9000 rce
- Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilitiesen-us·SecurityWeek· Patch Cisco Secure Email rce
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2026-20212 and every CVE in our database. Create a free account — no credit card required.
Create Free Account