Skip to content
VulniPulse

Cisco Switches Vulnerabilities & Security Advisories

23 advisories tracked · Cisco Security Advisories · 0 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Cisco advisory that VulniPulse classified as Switches, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 2 critical, 8 high, 11 medium.

Android app · Google Play

Monitor Cisco CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Source

Cisco Security Advisories

Polled via the official Cisco PSIRT RSS feed. Advisory pages are fetched for new items to extract fixed software and workarounds.

Latest Cisco Switches advisories

High7.7Cisco

High [CVE-2026-20185] Cisco SG350 and SG350X Series Managed Switches SNMP Denial of Service Vulnerability

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco 350 Series Managed Switches (SG350) and Cisco 350X Series Stackable Managed Switches (SG350X) firmware could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper error handling when parsing response data for a specific SNMP request. An attacker could exploit this vulnerability by sending a specific SNMP request to an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition. This vulnerability affects SNMP versions 1, 2c, and 3. To exploit this vulnerability through SNMPv2c or earlier, the attacker must know a valid read-write or read-only SNMP community string for the affected system. Cisco has not released and will not release software updates that address this vulnerability because the affected products are past the date for End of Software Maintenance Releases. The Cisco Product Security Incident Response Team (PSIRT) will continue to evaluate and disclose security vulnerabilities that affect these products until the Last Date of Support is reached. However, there is a mitigation. Affected product named by the advisory: Small Business Smart and Managed Switches.

CVE-2026-20185
Switches
May 6, 2026
High7.4Cisco

High [CVE-2023-20185] Cisco ACI Multi-Site CloudSec Encryption Information Disclosure Vulnerability

A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthenticated, remote attacker to read or modify intersite encrypted traffic. This vulnerability is due to an issue with the implementation of the ciphers that are used by the CloudSec encryption feature on affected switches. An attacker with an on-path position between the ACI sites could exploit this vulnerability by intercepting intersite encrypted traffic and using cryptanalytic techniques to break the encryption. A successful exploit could allow the attacker to read or modify the traffic that is transmitted between the sites. Cisco has deprecated and removed the ACI Multi-Site CloudSec encryption feature that is affected by this vulnerability. There are no workarounds that address this vulnerability. Affected products named by the advisory: NX-OS System Software in ACI Mode.

CVE-2023-20185
SwitchesNexusNX-OSNexus 9000
Apr 24, 2026
High8.6Cisco

High [CVE-2026-20086] Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family CAPWAP Denial of Service Vulnerability

A vulnerability in the processing of Control and Provisioning of Wireless Access Points (CAPWAP) packets of Cisco IOS XE Wireless Controller Software for the Catalyst CW9800 Family could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of a malformed CAPWAP packet. An attacker could exploit this vulnerability by sending a malformed CAPWAP packet to an affected device. A successful exploit could allow the attacker to cause the affected device to reload unexpectedly, resulting in a DoS … Affected products named by the advisory: Cisco IOS XE Software 17.14.1; Cisco IOS XE Software 17.15.1; Cisco IOS XE Software 17.15.3; Cisco IOS XE Software 17.15.2b; and 2 more.

CVE-2026-20086
SwitchesWirelessCatalystIOS XE
Mar 25, 2026
High8.6Cisco

High [CVE-2026-20084] Cisco IOS XE Software for Catalyst 9000 Series Switches DHCP Snooping Denial of Service Vulnerability

A vulnerability in the DHCP snooping feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause BOOTP packets to be forwarded between VLANs, resulting in a denial of service (DoS) condition. This vulnerability is due to improper handling of BOOTP packets on Cisco Catalyst 9000 Series Switches. An attacker could exploit this vulnerability by sending BOOTP request packets to an affected device. A successful exploit could allow an attacker to forward BOOTP packets from one VLAN to another, resulting in BOOTP VLAN leakage and potentially leading to high CPU utiliz… Affected products named by the advisory: Cisco IOS XE Software 16.6.1; Cisco IOS XE Software 16.6.2; Cisco IOS XE Software 16.6.3; Cisco IOS XE Software 16.6.5; and 3 more.

CVE-2026-20084
SwitchesCatalystIOS XECatalyst 9000
Mar 25, 2026
High7.4Cisco

High [CVE-2026-20033] Cisco Nexus 9000 Series Fabric Switches in ACI Mode Denial of Service Vulnerability

A vulnerability in Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to insufficient validation when processing specific Ethernet frames. An attacker could exploit this vulnerability by sending a crafted Ethernet frame to the management interface of an affected device. A successful exploit could allow the attacker to cause the device to reload unexpectedly, resulting in a DoS condition. Note: Only the out-of-band (OOB) management interface is affe… Affected products named by the advisory: Cisco NX-OS System Software in ACI Mode 15.2(1g); Cisco NX-OS System Software in ACI Mode 15.2(2e); Cisco NX-OS System Software in ACI Mode 15.2(2f); Cisco NX-OS System Software in ACI Mode 15.2(2g); and 4 more.

CVE-2026-20033
SwitchesNexusNX-OSNexus 9000
Feb 25, 2026
High7.7Cisco

High [CVE-2026-20048] Cisco Nexus 9000 Series Fabric Switches in ACI Mode SNMP Denial of Service Vulnerability

A vulnerability in the Simple Network Management Protocol (SNMP) subsystem of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper processing when parsing SNMP requests. An attacker could exploit this vulnerability by continuously sending SNMP queries to a specific MIB of an affected device. A successful exploit could allow the attacker to cause a kernel panic on the device, resulting in a reload and a DoS condition. Note: This vulnerability … Affected products named by the advisory: Cisco NX-OS System Software in ACI Mode 15.2(1g); Cisco NX-OS System Software in ACI Mode 15.2(2e); Cisco NX-OS System Software in ACI Mode 15.2(2f); Cisco NX-OS System Software in ACI Mode 15.2(2g); and 4 more.

CVE-2026-20048
SwitchesNexusNX-OSNexus 9000
Feb 25, 2026
High7.4Cisco Exploited

High [CVE-2026-20051] Cisco Nexus 3600 and 9500-R Series Switching Platforms Layer 2 Loop Denial of Service Vulnerability

A vulnerability with the Ethernet VPN (EVPN) Layer 2 ingress packet processing of Cisco Nexus 3600 Platform Switches and Cisco Nexus 9500-R Series Switching Platforms could allow an unauthenticated, adjacent attacker to trigger a Layer 2 traffic loop. This vulnerability is due to a logic error when processing a crafted Layer 2 ingress frame. An attacker could exploit this vulnerability by sending a stream of crafted Ethernet frames through the targeted device. A successful exploit could allow the attacker to cause a Layer 2 Virtual eXtensible LAN (VxLAN) traffic loop, which, in turn, could … Affected products named by the advisory: Cisco NX-OS Software 9.2(1); Cisco NX-OS Software 9.2(2); Cisco NX-OS Software 9.2(2t); Cisco NX-OS Software 9.2(3); and 4 more.

CVE-2026-20051
SwitchesNexusNX-OSNexus 3600
Feb 25, 2026
High7.4Cisco

High [CVE-2026-20010] Cisco NX-OS Software Link Layer Discovery Protocol Denial of Service Vulnerability

A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause the LLDP process to restart, which could cause an affected device to reload unexpectedly. This vulnerability is due to improper handling of specific fields in an LLDP frame. An attacker could exploit this vulnerability by sending a crafted LLDP packet to an interface of an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a denial of service (DoS) condition. Affected products named by the advisory: Cisco Unified Computing System (Managed); Cisco NX-OS Software 10.3(1); Cisco NX-OS Software 10.3(2); Cisco NX-OS Software 10.3(3); and 5 more.

CVE-2026-20010
SwitchesNexusNX-OS
Feb 25, 2026

← All Cisco advisories