Known vulnerabilities in Cisco NX-OS 4.3(4.240092)

Software: Cisco NX-OS
Version: 4.3(4.240092)
Software CPE: cpe:2.3:o:cisco_systems:cisco_nx-os:*:*:*:*:*:*:*:*
Total vulnerabilities: 2
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Cisco NX-OS version 4.3(4.240092) Cisco NX-OS 4.3(4.240092) is affected by 2 vulnerabilities: 2 low Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114566 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-20292
CWE-78 Low
No
No
4.3(6a), 4.3(6a)UCSM, 4.3(6b), 4.3(6c), 7.3(16)N1(1), 8.4(11), 8.4(12), 9.3(5)I42(3j), 9.3(5)I43(6a), 9.3(5)I43(6a.88), 9.3(5)I43(6b), 9.3(5)I43(6b.1), 9.3(15), 9.4(3b), 9.4(4), 10.2(9), 10.3(7), 10.3(8), 10.4(2)I43(6a), 10.4(2)I43(6a.34), 10.4(5), 10.5(1)I60(1a), 10.5(1)I60(1a.124), 10.5(3), 10.6(1), 16.0(9e), 16.1(4h) 29.08.2025 SB2025082978
#VU114564 - Exposure of sensitive information to an unauthorized actor
CVE-2025-20290
CWE-200 Low
No
No
4.3(6c), 4.3(6c)UCSM, 9.3(5)I42(3j), 9.3(5)I43(6b), 9.3(5)I43(6b.24), 10.3(8), 10.4(2)I43(6b), 10.4(2)I43(6b.4), 10.4(2)I43(6b.8), 10.5(1)I60(1a), 10.5(1)I60(1a.45), 10.5(1)I60(1a.250), 10.6(1) 29.08.2025 SB2025082954