Junglewise Threat Intelligence

CVE-2025-5088: Arista CVX privilege escalation to root via Redis session

CVE-2025-5088 · Severity: high · CVSS 8.3 · Published 2026-06-05

Technologies: Arista Networks CloudVision Exchange Cluster. Vendors: Arista Networks.

Executive brief

A vulnerability in Arista CloudVision Exchange (CVX) allows an attacker with access to the Redis database service to gain full administrative control over all servers in the cluster. To exploit this, an attacker must have the Redis password and network access to the service, which currently transmits data in unencrypted plain text. Successful exploitation results in a total compromise of the CVX infrastructure, potentially leading to unauthorized data access or service disruption.

Technical details

A privilege escalation vulnerability (CWE-269) exists in Arista CloudVision Exchange (CVX) where an authenticated Redis session can be used to gain root-level access across the entire cluster. The vulnerability stems from improper privilege management within the CVX cluster's interaction with its Redis component. An attacker requires network reachability to the Redis service and valid credentials; however, the risk is elevated because Redis authentication and communication currently occur over plaintext. By leveraging an established session, an attacker can escalate privileges to root on all cluster nodes. Arista is tracking TLS implementation for this service under RFE1294850.

Affected products

  • Arista Networks CloudVision Exchange (CVX) Cluster

Timeline

  • 2026-06-05: advisory: Initial advisory published by Arista Networks

References