PT-2026-24569 · Arista Networks · Aos-Cx

The National

·

Published

2026-03-11

·

Updated

2026-03-12

·

CVE-2026-23814

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AOS-CX (affected versions not specified)
Description A flaw exists in the command parameters of a specific AOS-CX CLI command. A low-privilege authenticated remote attacker could exploit this to inject malicious commands, potentially causing unintended system behavior. The issue involves the injection of commands through the command parameters.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-23814

Affected Products

Aos-Cx