CVE-2024-9132: The administrator is able to configure an insecure captive portal script
Published Jan 10, 2025
·Updated
The administrator is able to configure an insecure captive portal script
Affected Software
1 affected component
Arista NG Firewall<=17.1.1
Remediation
Information
The recommended resolution for all issues documented above is to upgrade to the version indicated below at your earliest convenience.
* 17.2 Upgrade
Event History
Jan 10, 2025
CVE Published
via MITRE·09:35 PM
Data Sourced
via MITRE·09:35 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-9132?
CVE-2024-9132 has been classified as a high severity vulnerability due to potential security implications.
2
How do I fix CVE-2024-9132?
To fix CVE-2024-9132, update to the latest version of Arista NG Firewall beyond version 17.1.1.
3
What is the impact of CVE-2024-9132?
CVE-2024-9132 allows an attacker to exploit an insecure captive portal script that could lead to unauthorized access.
4
Which versions of Arista NG Firewall are affected by CVE-2024-9132?
CVE-2024-9132 affects all versions of Arista NG Firewall up to and including version 17.1.1.
5
Who is affected by CVE-2024-9132?
Organizations using Arista NG Firewall versions up to 17.1.1 are at risk due to CVE-2024-9132.