CVE-2026-101154highCWE-22

CVE-2026-101154: high-severity vulnerability in Arista Networks CloudVision Portal

Security Advisory 0189

Published · Updated

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 8.6epss 0.6%
exploitation probability
0.6%top 55% of all CVEs
observed exploitation
nono source reports it
An authenticated remote attacker with specific permissions can read or write files on the platform filesystem beyond the intended scope through specially crafted requests and/or crafted file uploads to the Network Provisioning Image Repository.
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N