VYPR
Medium severity6.0NVD Advisory· Published Jun 5, 2026· Updated Jun 8, 2026

CVE-2026-25620

CVE-2026-25620

Description

An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). This issue uniquely affects version 17.4.0; earlier software releases are not exposed.

Affected products

3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.