Path traversal in Nexus Dashboard - CVE-2026-76409
Published: September 17, 2026
Vulnerability details
The vulnerability allows a remote user to compromise confidentiality, integrity, and availability.
The vulnerability exists due to improper limitation of a pathname to a restricted directory in Cisco Nexus Dashboard when processing pathnames. A remote user can submit a crafted pathname to compromise confidentiality, integrity, and availability.
The vulnerability was identified during internal security testing and is not known to be actively exploited.