← Browse

CVE-2024-20399

Act now ● On CISA KEV — actively exploited

Actively exploited — on the CISA KEV list.

CVSS base
EPSS — probability of exploitation (30 days)
4.3%
90.7th percentile
CISA KEV
Listed
Added 2024-07-02 · patch by 2024-07-23
Weakness / dates
Published — · modified —

Description

Cisco NX-OS contains a command injection vulnerability in the command line interface (CLI) that could allow an authenticated, local attacker to execute commands as root on the underlying operating system of an affected device.

Official: NVD · CVE.org