Executive brief
A security vulnerability exists in the Arista Next Generation Firewall, a device used to secure corporate networks and manage user access. An attacker with high-level administrative privileges could execute unauthorized commands on the system through the Captive Portal framework. This could lead to unauthorized access to sensitive data or disruption of network security services.
Technical details
An OS command injection vulnerability (CWE-78) exists within the Captive Portal application framework of Arista Edge Threat Management. The flaw is located in the handling of encrypted passwords, where improper neutralization of special elements allows for command execution. This vulnerability is network-reachable but requires high privileges (PR:H) to exploit. Successful exploitation allows an attacker to execute arbitrary commands on the underlying operating system, potentially leading to full system compromise. This issue is specific to version 17.4.0; earlier versions are not affected.
Affected products
- Arista Networks Next Generation Firewall (NGFW) 17.4.0
Timeline
- 2026-06-05: advisory: Initial advisory published by Arista Networks
- 2026-06-05: disclosed