Beveiligingsadvies

CVE-2026-17192

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-07-27 16:36:32
Laatst bijgewerkt 2026-07-27 17:28:36
Toegewezen door Arista
CVSS-score 8.5
Status PUBLISHED

Beschrijving

A VCO feature does not sufficiently validate caller-supplied input, allowing requests to be made on behalf of authenticated tenant accounts to internal services that are not otherwise accessible. This vulnerability requires a minimum role of Enterprise Standard Admin. This issue was discovered internally by Arista and the company is not aware of any malicious uses of this issue in customer networks.