Medium severity6.5NVD Advisory· Published Sep 22, 2020· Updated Jun 17, 2026
CVE-2020-24333
CVE-2020-24333
Description
A vulnerability in Arista’s CloudVision Portal (CVP) prior to 2020.2 allows users with “read-only” or greater access rights to the Configlet Management module to download files not intended for access, located on the CVP server, by accessing a specific API.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:arista:cloudvision_portal:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:arista:cloudvision_portal:*:*:*:*:*:*:*:*range: <2020.2.0
- (no CPE)range: <2020.2
- Arista/CloudVision Portaldescription
Patches
Vulnerability mechanics
References
2- www.arista.com/en/support/advisories-notices/security-advisories/11706-security-advisory-51nvdExploitMitigationVendor Advisory
- www.arista.com/en/support/advisories-noticesnvdVendor Advisory
News mentions
0No linked articles in our index yet.