CVE-2024-20286

HIGH EPSS 9.3%
Published Aug 28, 20241y ago · Modified Jun 17, 20261w ago
8.8 CVSS 3.1
High
Find Similar
Published Aug 28, 2024 1y ago
Last Modified Jun 17, 2026 1w ago

Description

A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, low-privileged, local attacker to escape the Python sandbox and gain unauthorized access to the underlying operating system of the device. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by manipulating specific functions within the Python interpreter. A successful exploit could allow an attacker to escape the Python sandbox and execute arbitrary commands on the underlying operating system with the privileges of the authenticated user.  Note: An attacker must be authenticated with Python execution privileges to exploit these vulnerabilities. For more information regarding Python execution privileges, see product-specific documentation, such as the section of the Cisco Nexus 9000 Series NX-OS Programmability Guide.

CVSS Details

Base Score
8.8
Exploitability
2.0
Impact
6.0
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Attack Vector Local
Attack Complexity Low
Privileges Required Low
User Interaction None
Scope Changed
Confidentiality High
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
9.3% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available

Weaknesses 1

CWE-693

Affected Products 232

VendorProductVersionRange
cisconx-os9.3\(13\)any
ciscon9k-c92160yc-x*any
ciscon9k-c92300yc*any
ciscon9k-c92304qc*any
ciscon9k-c9232c*any
ciscon9k-c92348gc-x*any
ciscon9k-c9236c*any
ciscon9k-c9272q*any
ciscon9k-c93108tc-ex*any
ciscon9k-c93108tc-fx*any
ciscon9k-c93120tx*any
ciscon9k-c93128tx*any
ciscon9k-c9316d-gx*any
ciscon9k-c93180lc-ex*any
ciscon9k-c93180yc-ex*any
ciscon9k-c93180yc-fx*any
ciscon9k-c93180yc2-fx*any
ciscon9k-c93216tc-fx2*any
ciscon9k-c93240yc-fx2*any
ciscon9k-c9332c*any
ciscon9k-c9332d-gx2b*any
ciscon9k-c9332pq*any
ciscon9k-c93360yc-fx2*any
ciscon9k-c9336c-fx2*any
ciscon9k-c9348d-gx2a*any
ciscon9k-c9348gc-fxp*any
ciscon9k-c93600cd-gx*any
ciscon9k-c9364c*any
ciscon9k-c9364c-gx*any
ciscon9k-c9364d-gx2a*any
ciscon9k-c9372px*any
ciscon9k-c9372px-e*any
ciscon9k-c9372tx*any
ciscon9k-c9372tx-e*any
ciscon9k-c9396px*any
ciscon9k-c9396tx*any
ciscon9k-c9504*any
ciscon9k-c9504-fm-r*any
ciscon9k-c9508*any
ciscon9k-c9508-fm-r*any
ciscon9k-c9516*any
ciscon9k-sc-a*any
ciscon9k-sup-a*any
ciscon9k-sup-a\+*any
ciscon9k-sup-b*any
ciscon9k-sup-b\+*any
ciscon9k-x9400-16w*any
ciscon9k-x9400-22l*any
ciscon9k-x9400-8d*any
ciscon9k-x9432c-s*any
ciscon9k-x9464px*any
ciscon9k-x9464tx2*any
ciscon9k-x9564px*any
ciscon9k-x9564tx*any
ciscon9k-x96136yc-r*any
ciscon9k-x9636c-r*any
ciscon9k-x9636c-rx*any
ciscon9k-x9636q-r*any
ciscon9k-x97160yc-ex*any
ciscon9k-x97284yc-fx*any
ciscon9k-x9732c-ex*any
ciscon9k-x9732c-fx*any
ciscon9k-x9736c-ex*any
ciscon9k-x9736c-fx*any
ciscon9k-x9788tc-fx*any
cisconexus_3000*any
cisconexus_3000_series*any
cisconexus_3016*any
cisconexus_3016q*any
cisconexus_3048*any
cisconexus_3064*any
cisconexus_3064-32t*any
cisconexus_3064-t*any
cisconexus_3064-x*any
cisconexus_3064t*any
cisconexus_3064x*any
cisconexus_3100*any
cisconexus_3100-v*any
cisconexus_3100-z*any
cisconexus_3100v*any
cisconexus_31108pc-v*any
cisconexus_31108pv-v*any
cisconexus_31108tc-v*any
cisconexus_31128pq*any
cisconexus_3132c-z*any
cisconexus_3132q*any
cisconexus_3132q-v*any
cisconexus_3132q-x*any
cisconexus_3132q-x\/3132q-xl*any
cisconexus_3132q-xl*any
cisconexus_3164q*any
cisconexus_3172*any
cisconexus_3172pq*any
cisconexus_3172pq-xl*any
cisconexus_3172pq\/pq-xl*any
cisconexus_3172tq*any
cisconexus_3172tq-32t*any
cisconexus_3172tq-xl*any
cisconexus_3200*any
cisconexus_3232*any
cisconexus_3232c*any
cisconexus_3232c_*any
cisconexus_3264c-e*any
cisconexus_3264q*any
cisconexus_3400*any
cisconexus_3408-s*any
cisconexus_34180yc*any
cisconexus_34200yc-sm*any
cisconexus_3432d-s*any
cisconexus_3464c*any
cisconexus_3500*any
cisconexus_3500_platform*any
cisconexus_3524*any
cisconexus_3524-x*any
cisconexus_3524-x\/xl*any
cisconexus_3524-xl*any
cisconexus_3548*any
cisconexus_3548-x*any
cisconexus_3548-x\/xl*any
cisconexus_3548-xl*any
cisconexus_3600*any
cisconexus_36180yc-r*any
cisconexus_3636c-r*any
cisconexus_9000*any
cisconexus_9000_in_aci_mode*any
cisconexus_9000_in_standalone*any
cisconexus_9000_in_standalone_nx-os_mode*any
cisconexus_9000v*any
cisconexus_9200*any
cisconexus_9200yc*any
cisconexus_92160yc-x*any
cisconexus_92160yc_switch*any
cisconexus_9221c*any
cisconexus_92300yc*any
cisconexus_92300yc_switch*any
cisconexus_92304qc*any
cisconexus_92304qc_switch*any
cisconexus_9232e*any
cisconexus_92348gc-x*any
cisconexus_9236c*any
cisconexus_9236c_switch*any
cisconexus_9272q*any
cisconexus_9272q_switch*any
cisconexus_9300*any
cisconexus_93108tc-ex*any
cisconexus_93108tc-ex-24*any
cisconexus_93108tc-ex_switch*any
cisconexus_93108tc-fx*any
cisconexus_93108tc-fx-24*any
cisconexus_93108tc-fx3*any
cisconexus_93108tc-fx3h*any
cisconexus_93108tc-fx3p*any
cisconexus_93120tx*any
cisconexus_93120tx_switch*any
cisconexus_93128*any
cisconexus_93128tx*any
cisconexus_93128tx_switch*any
cisconexus_9316d-gx*any
cisconexus_93180lc-ex*any
cisconexus_93180lc-ex_switch*any
cisconexus_93180tc-ex*any
cisconexus_93180yc-ex*any
cisconexus_93180yc-ex-24*any
cisconexus_93180yc-ex_switch*any
cisconexus_93180yc-fx*any
cisconexus_93180yc-fx-24*any
cisconexus_93180yc-fx3*any
cisconexus_93180yc-fx3h*any
cisconexus_93180yc-fx3s*any
cisconexus_93216tc-fx2*any
cisconexus_93240tc-fx2*any
cisconexus_93240yc-fx2*any
cisconexus_9332c*any
cisconexus_9332d-gx2b*any
cisconexus_9332d-h2r*any
cisconexus_9332pq*any
cisconexus_9332pq_switch*any
cisconexus_93360yc-fx2*any
cisconexus_9336c-fx2*any
cisconexus_9336c-fx2-e*any
cisconexus_9336pq*any
cisconexus_9336pq_aci*any
cisconexus_9336pq_aci_spine*any
cisconexus_9336pq_aci_spine_switch*any
cisconexus_93400ld-h1*any
cisconexus_9348d-gx2a*any
cisconexus_9348gc-fx3*any
cisconexus_9348gc-fx3ph*any
cisconexus_9348gc-fxp*any
cisconexus_93600cd-gx*any
cisconexus_9364c*any
cisconexus_9364c-gx*any
cisconexus_9364c-h1*any
cisconexus_9364d-gx2a*any
cisconexus_9372px*any
cisconexus_9372px-e*any
cisconexus_9372px-e_switch*any
cisconexus_9372px_switch*any
cisconexus_9372tx*any
cisconexus_9372tx-e*any
cisconexus_9372tx-e_switch*any
cisconexus_9372tx_switch*any
cisconexus_9396px*any
cisconexus_9396px_switch*any
cisconexus_9396tx*any
cisconexus_9396tx_switch*any
cisconexus_9408*any
cisconexus_9432pq*any
cisconexus_9500*any
cisconexus_9500_16-slot*any
cisconexus_9500_4-slot*any
cisconexus_9500_8-slot*any
cisconexus_9500_supervisor_a*any
cisconexus_9500_supervisor_a\+*any
cisconexus_9500_supervisor_b*any
cisconexus_9500_supervisor_b\+*any
cisconexus_9500r*any
cisconexus_9504*any
cisconexus_9504_switch*any
cisconexus_9508*any
cisconexus_9508_switch*any
cisconexus_9516*any
cisconexus_9516_switch*any
cisconexus_9536pq*any
cisconexus_9636pq*any
cisconexus_9716d-gx*any
cisconexus_9736pq*any
cisconexus_9800*any
cisconexus_9800_34-port_100g_and_14-port_400g_line_card*any
cisconexus_9800_36-port_400g_line_card*any
cisconexus_9804*any
cisconexus_9808*any

References 2

  • sec.cloudapps.cisco.com https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-nxos-psbe-ce-YvbTn5du
    Vendor Advisory
  • cisco.com https://www.cisco.com/c/en/us/td/docs/dcn/nx-os/nexus9000/105x/programmability/cisco-nexus-9000-series-nx-os-programmability-guide-105x/m-n9k-python-api-101x.html?bookSearch=true#concept_A2CFF094ADCB414C983EA06AD8E9A410
    Product

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.