AI description
CVE-2025-20111 is a vulnerability found in the health monitoring diagnostics of Cisco Nexus 3000 and 9000 Series Switches running in standalone NX-OS mode. It allows an unauthenticated, adjacent attacker to send specially crafted Ethernet frames to the affected device, causing it to unexpectedly reload and resulting in a denial-of-service (DoS) condition. The vulnerability stems from the incorrect handling of these specific Ethernet frames. This vulnerability affects Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches configured in standalone NX-OS mode. Cisco has released security advisories and patches to address this vulnerability. Network administrators are strongly encouraged to update their affected devices to mitigate the risk of exploitation.
- Description
- A vulnerability in the health monitoring diagnostics of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an unauthenticated, adjacent attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of specific Ethernet frames. An attacker could exploit this vulnerability by sending a sustained rate of crafted Ethernet frames to an affected device. A successful exploit could allow the attacker to cause the device to reload.
- Source
- psirt@cisco.com
- NVD status
- Received
CVSS 3.1
- Type
- Primary
- Base score
- 7.4
- Impact score
- 4
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
- Severity
- HIGH
- psirt@cisco.com
- CWE-1220
- Hype score
- Not currently trending
Cisco patches critical command injection & DoS flaws in Nexus switches. 🔸 CVE-2025-20111: Unauth'd attackers can trigger device reloads via crafted Ethernet frames 🔸 Affects Nexus 3000 & 9000 (NX-OS mode) 🔸 Admin credential security now more critical than ever Details:
@Osec__
13 Mar 2025
26 Impressions
1 Retweet
1 Like
0 Bookmarks
0 Replies
0 Quotes
آخرین آسیبپذیریهای کشفشده در امنیت سایبری (مثل CVE-2025-22226 در VMware و CVE-2025-20111 در سوئیچهای Cisco Nexus) نشون میدن که حملات DoS و افشای اطلاعات همچنان تهدیدات جدی هستن. بهروزرسانی سریع سیستمها و هوشیاری در برابر اکسپلویتها کلید دفاعه!
@Forcedalas
4 Mar 2025
17 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
به تازگی آسیب پذیری جدیدی با کد شناسایی CVE-2025-20111 برای سوئیچ های Nexus سیسکو سری ۳۰۰۰ و ۹۰۰۰ منتشر شده است. این آسیب پذیری که از نوع DOS بوده ، به هکرها بدون احراز هویت ، امکان اجرای این نوع حمله را می دهد. https://t.co/Poz3aKYxT1 https://t.co/VXkkonPOd5
@AmirHossein_sec
4 Mar 2025
19 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-20111 impacts Cisco Nexus #CiscoNexus #CVE-2025-20111 https://t.co/qduhr5WNYl
@pravin_karthik
3 Mar 2025
18 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
به تازگی آسیب پذیری جدیدی با کد شناسایی CVE-2025-20111 برای سوئیچ های Nexus سیسکو سری ۳۰۰۰ و ۹۰۰۰ منتشر شده است. این آسیب پذیری که از نوع DOS بوده،به هکرهابدون احراز هویت ، امکان اجرای این نوع حمله را می دهد. برای پیشگیری و مقابله با این تهدید به روز رسانی لازم را اعمال نمایید.
@cybernetic_cy
3 Mar 2025
62 Impressions
2 Retweets
4 Likes
0 Bookmarks
0 Replies
0 Quotes
Cisco has released urgent updates for Nexus switches fix critical vulnerabilities, including a high-severity DoS flaw (CVE-2025-20111) affecting 3000 & 9000 Series. ⚠️ #CiscoNexus #NetworkSecurity #USA link: https://t.co/xpTuQOFEe5 https://t.co/T66uJm2swk
@TweetThreatNews
3 Mar 2025
36 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CiscoはNexus 3000および9000シリーズスイッチに影響を及ぼす重大なサービス拒否(DoS)脆弱性(CVE-2025-20111)についてのセキュリティアドバイザリを発表しました。 #セキュリティ対策Lab #セキュリティ #Security https://t.co/AhTRuIs8KI
@securityLab_jp
28 Feb 2025
8 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2025-20111 🔴 HIGH (7.4) 🏢 Cisco - Cisco NX-OS Software 🏗️ 9.3(2) 🔗 https://t.co/qZfvHfotPb #CyberCron #VulnAlert https://t.co/l10fwN8656
@cybercronai
27 Feb 2025
6 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Cisco flags DoS flaw (CVE-2025-20111)—Nexus switches risk 90% downtime. Cyber pros, is your network hardened, and if it is, how good is your detection capabilities? Learn more: https://t.co/cpLGgDXe56 thoughts? #CyberSec #Vuln
@adriananglin
27 Feb 2025
4 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Cisco Nexus 3000 and 9000 Series Switches Health Monitoring Diagnostics Denial of Service Vulnerability (CVE-2025-20111) #Cisco #CiscoNexus #CVE202520111 #DoS https://t.co/raj2tMRqht https://t.co/sohO0dRU5X
@SystemTek_UK
27 Feb 2025
13 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚠️ Vulnerability Alert: Cisco Nexus Switch Vulnerability Allows Attackers to Cause DoS 📅 Timeline: Disclosure: 2025-02-26, Patch: Not specified 🆔cveId: CVE-2025-20111 📊baseScore: 7.4 📏cvssMetrics: AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H cvssSeverity: High 🟠… https://t.co/rJu
@syedaquib77
27 Feb 2025
34 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Cisco Warns of DoS Vulnerability in Nexus 3000 and 9000 Series Switches (CVE-2025-20111) https://t.co/ZiMCMskFcy
@Dinosn
27 Feb 2025
2034 Impressions
6 Retweets
23 Likes
10 Bookmarks
0 Replies
0 Quotes
CVE-2025-20111 A vulnerability in the health monitoring diagnostics of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in standalone NX-OS mode could allow an … https://t.co/jbWfDCfaBD
@CVEnew
26 Feb 2025
52 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 CVE-2025-20111 🔴 HIGH (7.4) 🏢 Cisco - Cisco NX-OS Software 🏗️ 9.3(2) 🔗 https://t.co/qZfvHfotPb #CyberCron #VulnAlert @Cisco https://t.co/rJEWJaW83g
@cybercronai
26 Feb 2025
41 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
1 Quote
⚠️ Vulnerability Alert: Cisco Nexus 3000 and 9000 Series Switches Health Monitoring Diagnostics Denial of Service Vulnerability 📅 Timeline: Disclosure: 2023-10-15, Patch: Not yet available 📌 Attribution: Cisco Security Advisory 🆔 CVE ID: CVE-2025-20111 📊 Base Score:…
@syedaquib77
26 Feb 2025
40 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes