Filter
-Infinity
0

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution Vulnerability

First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-25-181: (0Day) Arista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution Vulnerability

First published (updated )

Arista AOS-CXAuthenticated Access Control Vulnerability allows Sensitive Information Disclosure in AOS-CX REST Interface

First published (updated )

Arista EOSOn affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is received from the AAA server resulting in only the first line of the ACL being installed after an Accelerated Software Upgrade (ASU) restar

First published (updated )

Arista EOSOn affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak memory. This may result in BGP routing processing being terminated and route flapping.

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista EOSOn affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been rejected.

First published (updated )

Arista EOSOn affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been rejected.

7.7
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability

7.8
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability

8.3
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability

8.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability

8.8
First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-24-1717: (0Day) Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability

7.2
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability

7.2
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability

First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-24-1720: (0Day) Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability

8.1
First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-24-1718: (0Day) Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability

8.1
First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-24-1719: (0Day) Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability

8.3
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability

8.3
First published (updated )

Arista Edge Threat ManagementMultiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW).

8.8
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista MOSOn Arista MOS configuration of a BGP password will cause the password to be logged in clear text.

First published (updated )

Arista EOSOn affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload.

7.5
First published (updated )

Arista EOSOn affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets

First published (updated )

Arista CloudVision PortalOn affected versions of the CloudVision Portal improper access controls on the connection from devic…

8.1
First published (updated )

Arista EOSOn the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista EOSOn affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI re…

8.8
First published (updated )

Arista EOSOn affected modular platforms running Arista EOS equipped with both redundant supervisor modules and having the redundancy protocol configured with RPR or SSO, an existing unprivileged user can login to the standby supervisor as a root user, leading t ...

First published (updated )

Arista CloudEOSOn affected platforms running Arista CloudEOS a size check bypass issue in the Software Forwarding Engine (Sfe) may allow buffer over reads in later code. Additionally, depending on configured options this may cause a recomputation of the TCP checksum ...

7.5
First published (updated )

Arista CloudEOSOn affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch.

7.5
First published (updated )

Arista EOSOn affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in the snmpd process.

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203