CVE-2026-20010

CWE-8054 documents4 sources
Severity
7.4HIGH
EPSS
0.0%
top 95.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 25

Description

A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause the LLDP process to restart, which could cause an affected device to reload unexpectedly. This vulnerability is due to improper handling of specific fields in an LLDP frame. An attacker could exploit this vulnerability by sending a crafted LLDP packet to an interface of an affected device. A successful exploit could allow the attacker to cause th

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:HExploitability: 2.8 | Impact: 4.0

Affected Packages3 packages

CVEListV5cisco/cisco_nx-os_software17 versions+16

🔴Vulnerability Details

2
CVEList
Cisco Nexus 3000 and 9000 Series Switches Link Layer Discovery Protocol Denial of Service Vulnerability2026-02-25
GHSA
GHSA-8f59-hcpc-g3hp: A vulnerability in the Link Layer Discovery Protocol (LLDP) feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause2026-02-25

📋Vendor Advisories

1
Cisco
Cisco NX-OS Software Link Layer Discovery Protocol Denial of Service Vulnerability2026-02-25
CVE-2026-20010 (HIGH CVSS 7.4) | A vulnerability in the Link Layer D | cvebase.io