Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

197 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisAlta (7.3)0.24%—Arista Clearpass Policy ManagerAI6/10/20267/10/2026
An unauthenticated path traversal vulnerability exists in an API endpoint of ClearPass Policy Manager. Successful exploitation of this vulnerability allows an unauthenticated remote attacker to influence authorization decisions and be assigned an unintended role.
Pendiente de análisisCrítica (9.8)0.36%—Arista Clearpass Policy ManagerAI6/10/20267/10/2026
An authenticated path traversal vulnerability exists in ClearPass Policy Manager. Successful exploitation could allow an attacker to read and modify certain files on the underlying operating system.
Pendiente de análisisAlta (8.8)1.1%—Arista Clearpass Policy ManagerAI6/10/20267/10/2026
A command injection vulnerability exists in the client software of ClearPass Policy Manager. Successful exploitation could allow an attacker who is able to supply crafted input to the affected software to execute arbitrary commands with elevated privileges on the affected host.
Pendiente de análisisAlta (8.8)0.55%—Arista Clearpass Policy ManagerAI6/10/20267/10/2026
An authenticated path traversal vulnerability exists in the command line interface of ClearPass Policy Manager. Successful exploitation could allow a low-privileged authenticated remote attacker to execute arbitrary code with elevated privileges on the underlying operating system.
Pendiente de análisisAlta (7.1)0.28%—Arista WI FI Access PointAI6/10/20267/10/2026
On affected Arista Wi-Fi access points with Captive Portal enabled, an unauthenticated wireless client connected to a captive-portal-enabled SSID can crash the portal service with a crafted HTTP request. The service automatically restarts, but a sustained low-rate attack can cause a persistent denial of service of the…
Pendiente de análisisAlta (7.1)0.28%—Arista Wi-fi Access PointAI6/10/20267/10/2026
On affected Arista Wi-Fi access points with Captive Portal enabled, an unauthenticated wireless client connected to a Captive-Portal-enabled SSID can crash the portal service with a crafted HTTP request. This results in a temporary denial of service until the service automatically restarts. Remote code execution is…
Pendiente de análisisCrítica (9)0.23%—Arista WI FI Access PointAI6/10/20267/10/2026
On affected Arista Wi-Fi access points, a memory corruption vulnerability exists in access point's wired uplink network endpoints. An unauthenticated attacker can crash the sensor service or potentially achieve remote code execution. Exploitation requires the attacker to be on the same network segment as the access…
Pendiente de análisisAlta (7.7)0.24%—Arista WI FI Access PointAI6/10/20267/10/2026
On affected Arista Wi-Fi access points, an unauthenticated attacker with network access to the capture service can send a crafted packet to cause the service to crash or potentially achieve remote code execution. This exploit requires an uncommonly used non-default streaming mode.
Pendiente de análisisBaja (2.3)0.19%—Arista Access PointAI6/10/20267/10/2026
On affected Arista access points configured with VXLAN tunnelling and L2-proxy (a specific configuration unique to the VESPA use-case), a wireless client associated to the tunnelled SSID can send a crafted packet, causing the access point to reveal memory contents in network traffic. No write primitive or remote code…
Pendiente de análisisAlta (8.7)0.31%—Arista Access PointAI6/10/20267/10/2026
On affected Arista access points with Wireless Intrusion Prevention System (WIPS) active, an unauthenticated attacker within radio frequency (RF) proximity can send a crafted frame to crash the sensor service, disabling WIPS monitoring on the access point, or potentially achieve remote code execution. No wireless…
Pendiente de análisisCrítica (9.4)0.25%—Arista Wi-fi Access PointsAI6/10/20267/10/2026
On affected Arista Wi-Fi access points with captive portal, or application firewall enabled on at least one SSID, a vulnerability in the wireless gateway service could allow an unauthenticated network-adjacent attacker to send a crafted packet that triggers a stack overflow, resulting in a denial-of-service condition…
Pendiente de análisisAlta (8.6)1.4%—Arista Cloudvision CUEAI6/10/20267/10/2026
An operating system (OS) command injection vulnerability in CloudVision CUE backup management may allow an authenticated Super User to submit a crafted backup request and execute arbitrary commands with the privileges of the affected service.
Pendiente de análisisMedia (6)0.25%—Arista Cloudvision CUEAI6/10/20267/10/2026
An insecure direct object reference (IDOR) vulnerability in a CloudVision CUE file-serving interface may allow an authenticated network user, under specific attack conditions, to access another user's transient data.
Pendiente de análisisAlta (7.2)0.33%—Arista Cloudvision PortalAIArista Cloudvision SensorAI6/10/20267/10/2026
On affected versions of CloudVision Portal (on-premises) or CloudVision Sensor, a path traversal vulnerability exists. An authenticated user with sufficient high privileges could exploit this to extract unintended data from the Sensor.
Pendiente de análisisAlta (7.6)0.38%—Arista CloudvisionAI6/10/20267/10/2026
Insufficient validation in the Single Sign-On (SSO) login flow could allow a remote, unauthenticated attacker to craft a URL that, when clicked by a user, causes the identity provider (IdP) to deliver authentication material to an attacker-controlled URL instead of to CloudVision.
AnalizadaCrítica (9.5)1.1%⚠ Explotación activaArista Velocloud Orchestrator22/9/202623/9/2026
VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.…
Pendiente de análisisAlta (7.1)0.28%—Arista EOSAI16/9/202617/9/2026
On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by default on all VLANs), a network-adjacent unauthenticated attacker can send malformed network packets on an affected VLAN to cause the IGMP snooping agent to terminate unexpectedly. This results in a…
Pendiente de análisisMedia (6)0.32%—Arista EOSAI16/9/202617/9/2026
Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, the gNPSI client credentials might be logged in clear text in local or remote accounting logs to authenticated users.
Pendiente de análisisCrítica (9.2)0.69%—Arista EOSAI16/9/202617/9/2026
Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, an unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting an attacker full administrative control over the compromised switch.
Pendiente de análisisMedia (5.3)0.27%—Arista EOSAI16/9/202617/9/2026
On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement and replay it indefinitely. Replayed advertisements can be used to advertise stale…
Pendiente de análisisBaja (2.1)0.21%—Arista EOSAI16/9/202617/9/2026
On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient privileges to view agent trace logs (or a system receiving forwarded log output) to obtain the peer device VRRP…
Pendiente de análisisMedia (6)0.28%—Arista EOSAI16/9/202616/9/2026
On affected platforms running Arista EOS, an unauthenticated attacker who is network-adjacent to the switch and able to connect to a device with PIM Sparse Mode and MLAG configured, can send malformed messages that cause the Pimsm agent to terminate unexpectedly. The Pimsm agent is automatically restarted, but…
Pendiente de análisisMedia (6.9)0.29%—Arista EOSAI16/9/202616/9/2026
When specific platforms are using Arista EOS with a loose Unicast Reverse Path Forwarding (uRPF) configuration, certain traffic may not be subjected to the intended verification drop. Consequently, traffic that should be dropped based on these routes could still be processed and forwarded by the device. This issue was…
Pendiente de análisisAlta (8.9)0.50%—Arista EOSAIOpen Shortest Path First Ospfv3AI16/9/202616/9/2026
On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, a specially crafted packet can cause the OSPFv3 agent to restart unexpectedly.
Pendiente de análisisCrítica (9.5)0.69%—Arista EOSAIP4runtimeAI16/9/202617/9/2026
An unauthenticated P4Runtime (Programming Protocol-Independent Packet Processors Runtime) client can achieve arbitrary code execution under certain conditions on affected platforms running Arista EOS configured with P4Runtime. P4Runtime is disabled by default in Arista EOS. By crafting a malicious packet during the…
Orbitaley — Vulnerabilidades