Vulnerabilidades em Arista

11 resultados
Análise Vexday

Arista apresenta 11 vulnerabilidades conhecidas na base, com 1 crítica, mas nenhuma sob ataque ativo no momento. A fraqueza predominante é autenticação imprópria (CWE-287), sugerindo riscos em controles de acesso. Sem publicações recentes (últimos 90 dias), o panorama reflete exposições legadas que demandam revisão de configurações e políticas de acesso.

CVE-2024-12829HIGHArista NG Firewall ExecManagerImpl Command Injection Remote Code Execution VulnerabilityEPSS 1.3%CVE-2024-12830HIGHArista NG Firewall custom_handler Directory Traversal Remote Code Execution VulnerabilityEPSS 1.0%CVE-2021-28495HIGHIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditions, user authenticatEPSS 0.9%CVE-2021-28494CRITICALIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditions, authentication iEPSS 0.9%CVE-2025-2767HIGHArista NG Firewall User-Agent Cross-Site Scripting Remote Code Execution VulnerabilityEPSS 0.6%CVE-2024-12832HIGHArista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write VulnerabilityEPSS 0.5%CVE-2021-28497MEDIUMIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditions, the bash shell mEPSS 0.2%CVE-2021-28498HIGHIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user enable passwords set in clear text coEPSS 0.2%CVE-2021-28493HIGHIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditions, a user may be abEPSS 0.2%CVE-2021-28499MEDIUMIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user account passwords set in clear text cEPSS 0.2%CVE-2024-12831MEDIUMArista NG Firewall uvm_login Incorrect Authorization Privilege Escalation VulnerabilityEPSS 0.2%