Cisco NX-OS Software Python Sbox Escape (cisco-sa-nxos-mppe-dhKZAFgb)

medium Nessus Plugin ID 364454

Synopsis

The remote device is missing a vendor-supplied security patch

Description

According to its self-reported version, Cisco NX-OS Software is affected by a vulnerability.

- A vulnerability in the Python interpreter of Cisco NX-OS Software could allow an authenticated, local attacker with low privileges to escape the Python sandbox and gain unauthorized access to the underlying operating system of an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by manipulating specific functions within the Python interpreter. A successful exploit could allow an attacker to escape the Python sandbox and execute arbitrary commands on the underlying operating system with the privileges of the authenticated user. Note: An attacker must be authenticated with Python execution privileges to exploit this vulnerability. (CVE-2026-20032)

Please see the included Cisco BIDs and Cisco Security Advisory for more information.

Solution

Upgrade to the relevant fixed version referenced in Cisco bug IDs CSCws98543, CSCwt81528, CSCwt81529

See Also

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCws98543

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwt81528

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwt81529

http://www.nessus.org/u?38217dd4

Plugin Details

Severity: Medium

ID: 364454

File Name: cisco-sa-nxos-mppe-dhKZAFgb.nasl

Version: 1.1

Type: Combined

Family: CISCO

Published: 10/9/2026

Updated: 10/9/2026

Configuration: Enable paranoid mode

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 2.1

Percentile: 8.15

CVSS v2

Risk Factor: Low

Base Score: 3.2

Temporal Score: 2.4

Vector: CVSS2#AV:L/AC:L/Au:S/C:P/I:P/A:N

CVSS Score Source: CVE-2026-20032

CVSS v3

Risk Factor: Medium

Base Score: 4.4

Temporal Score: 3.9

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:cisco:nx-os

Required KB Items: Settings/ParanoidReport, Host/Cisco/NX-OS/Version, Host/Cisco/NX-OS/Model, Host/Cisco/NX-OS/Device

Exploit Ease: No known exploits are available

Patch Publication Date: 10/7/2026

Vulnerability Publication Date: 10/7/2026

Reference Information

CVE: CVE-2026-20032

CWE: 653

CISCO-SA: cisco-sa-nxos-mppe-dhKZAFgb

IAVA: 2026-A-1091

CISCO-BUG-ID: CSCws98543, CSCwt81528, CSCwt81529