Technology newsroom
Urgent Alert! Critical Vulnerability on Cisco Nexus 9000 Risks Remote Hacker Attacks, Immediate Root Access Seizure
Cisco warns of a Critical vulnerability (9.8 CVSS) on Nexus 9000 Series switches using Silicon One chips (CVE-2026-20212), allowing remote attackers to gain root access. An IOS XR update has also been released, patching 7 critical vulnerabilities with no workarounds. System administrators should apply patches urgently.
π Key Highlights:
- Cisco announced a severe vulnerability, CVE-2026-20212, affecting Nexus 9000 Series switches utilizing Silicon One chips, with a high severity score of 9.8 CVSS.
- This vulnerability allows unauthenticated remote attackers to execute malicious code and gain full control (Root) of the device.
- Additionally, a major security update has been released for IOS XR, patching a total of 7 vulnerabilities, two of which are rated 9.8 CVSS. Crucially, there are no immediate workarounds for these issues.
Cisco has issued a significant security alert to system administrators globally, disclosing the discovery of a Critical vulnerability, tracked as CVE-2026-20212. This vulnerability directly impacts 10 models of Cisco Nexus 9000 Series network switches that utilize the Silicon One chip architecture. The vulnerability has been assigned a high severity score of 9.8 out of 10 according to the CVSS standard, indicating the highest level of risk.
The threat posed by this vulnerability is extremely concerning, as it allows malicious actors on external networks to remotely attack the affected devices without requiring authentication. If the attack is successful, attackers can execute harmful code as a Root user, which is the highest level of access in the operating system. This means hackers could gain complete control over the switch, potentially leading to data interception, configuration modification, network disruption, or using it as a base to further attack other systems within the organization.
π‘οΈ Security Update for IOS XR
Beyond the Nexus 9000 vulnerability, Cisco has also released an IOS XR hardening release, a major security update that includes fixes for 7 Common Vulnerabilities and Exposures (CVEs) in a single patch. Among these, two vulnerabilities are also rated 9.8 CVSS. What is particularly concerning for system administrators is Cisco's confirmation that there are no workarounds whatsoever for any of the vulnerabilities in this IOS XR set. The only method of protection is to update the software to the latest version as quickly as possible.
Cisco has already released patches to address all these vulnerabilities. Therefore, all network administrators and IT Admins using affected Cisco Nexus 9000 Series devices, as well as devices running IOS XR, are strongly advised to promptly check and apply the security patches to mitigate risks before they can be exploited in cyberattacks.
π¬ Does your organization use Cisco Nexus 9000 or devices running IOS XR? Have you checked and planned for security patch updates yet?