On affected versions of the CloudVision Portal, improper access controls could enable a malicious authenticated user to take broader actions on managed EOS devices than intended. This advisory impacts the Arista CloudVision Portal products when run on-premise. It does not impact CloudVision as-a-Service.
References
Configurations
No configuration.
History
12 May 2025, 17:32
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
08 May 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-08 19:15
Updated : 2025-05-12 17:32
NVD link : CVE-2024-11186
Mitre link : CVE-2024-11186
CVE.ORG link : CVE-2024-11186
JSON object : View
Products Affected
No product.
CWE
CWE-287
Improper Authentication