Sunday, 19 Apr 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Global Market > Chained vulnerabilities in Cisco Catalyst switches could induce denial-of-service
Global Market

Chained vulnerabilities in Cisco Catalyst switches could induce denial-of-service

Last updated: March 29, 2026 11:42 am
Published March 29, 2026
Share
Cisco building exterior with sign
SHARE

Opswat additionally found two different Catalyst 9300 vulnerabilities: CVE-2026-20112 (cross-site scripting) and CVE-2026-20113 (CRLF injection). These relate to the IOS XE IOx integration atmosphere which allows cloud edge computing options on Catalyst switches.

The primary of those, CVE-2026-20112, could possibly be exploited by an “authenticated person [who] may retailer malicious JavaScript payloads that may later execute within the context of one other person’s session,” mentioned Opswat in its full vulnerability analysis.

The second, CVE-2026-20113, would enable an attacker to cowl their tracks for any exploit on IOS XE IOx: “By injecting crafted management characters, an attacker can forge or manipulate log entries, probably obscuring malicious exercise and compromising the integrity of audit information,” mentioned Opswat, including that this weakens the reliability of logging mechanisms essential for monitoring, incident response, and forensic evaluation.

Patching precedence

To make headway, an attacker would want to chain the primary two vulnerabilities, CVE-2026-20114 and CVE-2026-20110, the primary of which might require authentication utilizing stolen credentials.

This barely raises the bar to any compromise, though stealing credentials for low-privilege person accounts just isn’t a serious barrier for an attacker.

Nonetheless, the truth that an attacker can elevate privileges from a fundamental Foyer Ambassador account to place a swap right into a denial-of-service state underlines the chance this vulnerability poses. A brief-term mitigation for this could be to ensure MFA safety is turned on for all person accounts accessing the Foyer Ambassador function.

Source link

See also  Asus White Paper: Powering AI for Today and Tomorrow
TAGGED: catalyst, chained, Cisco, denialofservice, induce, Switches, vulnerabilities
Share This Article
Twitter Email Copy Link Print
Previous Article Meanwhile in the server room.... Rearview shot of two IT technicians having difficulty repairing a computer in a data center. Panasonic says data center batteries are selling out and AI is to blame
Next Article air vs liquid cooling 1 Why AI rack densities make liquid cooling nonnegotiable
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

Data quality is key to AI-driven growth

As corporations race to implement AI, many are discovering that mission success hinges instantly on…

September 23, 2025

Origami points to new materials that ‘breathe’ and twist on command

Analysis led on the College of Michigan modeled how totally different origami constructions constituted of…

May 12, 2025

Google’s environmental report hints at enterprise cost-saving tactics

The flip aspect of this method is that newer tools can typically be much more…

July 4, 2024

US power, tech companies lament snags in meeting AI energy needs | The Mighty 790 KFGO

By Laila KearneyNEW YORK (Reuters) – U.S. electrical methods aren't increasing quick sufficient to satisfy…

April 19, 2024

SS&C Blue Prism: On the journey from RPA to agentic automation

For organizations who're nonetheless wedded to the foundations and constructions of robotic course of automation…

February 17, 2026

You Might Also Like

Preparing your organisation for the quantum threat
Global Market

12 quantum training courses from ISC2, IBM, AWS and more

By saad
Quantum computing
Global Market

Quantum developments put focus on authentication

By saad
Team of Diverse Multiethnic Software Developers Working on Computers, Programming Advanced Code, Managing Artificial Intelligence Projects Online for Innovative Cyber Security Service
Global Market

Equinix offering targets automated AI-centric network operations

By saad
data-center-mainframe-woman-it-specialist
Global Market

Data centers are costing local governments billions

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.