Junglewise Threat Intelligence

CVE-2026-25623: Arista NGFW command injection in browser management pipeline

CVE-2026-25623 · Severity: medium · CVSS 6 · Published 2026-06-05

Technologies: Arista Networks Next Generation Firewall. Vendors: Arista Networks.

Executive brief

A security vulnerability exists in the Arista Edge Threat Management Next Generation Firewall, a device used to secure corporate networks and manage internet traffic. An authorized administrator could exploit a flaw in the management interface to run unauthorized commands on the underlying system. This could allow an attacker with administrative credentials to gain deeper access to the device's operating system, potentially compromising the integrity of the security appliance.

Technical details

An OS command injection vulnerability (CWE-78) exists in the browser management pipeline of Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). The flaw stems from improper input validation of parameters passed through the management interface. An attacker must be authenticated with administrative privileges to exploit this vulnerability. Successful exploitation allows the attacker to execute arbitrary code or terminal scripts with the permissions of the underlying system, potentially leading to full system compromise. Arista has assigned a CVSS v4.0 score of 7.0 (High) and a CVSS v3.1 score of 6.0 (Medium).

Affected products

  • Arista Networks Next Generation Firewall (NGFW)

Timeline

  • 2026-06-05: disclosed
  • 2026-06-05: advisory

References

Related threats