Project Subscriptions
No data.
No advisories yet.
Solution
The recommended resolution is to upgrade to NGFW Version 17.4.1 at your earliest convenience.
Workaround
Per operational best practice security models, do not allow unauthorized administrative access to the administrative browser.
Fri, 05 Jun 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An input validation command execution vulnerability exists in the browser management pipeline of Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). Authenticated administrators can leverage this exposure to obtain underlying terminal script code processing execution permissions. | |
| Title | Arista Edge Threat Management NGFW UI Arbitrary Command Execution | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Arista
Published:
Updated: 2026-06-05T20:27:23.391Z
Reserved: 2026-02-03T22:23:04.359Z
Link: CVE-2026-25623
Updated: 2026-06-05T20:27:20.329Z
Status : Awaiting Analysis
Published: 2026-06-05T20:17:30.980
Modified: 2026-06-05T20:48:41.560
Link: CVE-2026-25623
No data.
OpenCVE Enrichment
Updated: 2026-06-05T21:45:05Z