On affected versions of the CloudVision Portal, improper...
Critical severity
Unreviewed
Published
May 8, 2025
to the GitHub Advisory Database
•
Updated May 8, 2025
Description
Published by the National Vulnerability Database
May 8, 2025
Published to the GitHub Advisory Database
May 8, 2025
Last updated
May 8, 2025
On affected versions of the CloudVision Portal, improper access controls could enable a malicious authenticated user to take broader actions on managed EOS devices than intended. This advisory impacts the Arista CloudVision Portal products when run on-premise. It does not impact CloudVision as-a-Service.
References