Medium severity6.0NVD Advisory· Published Jun 5, 2026· Updated Jun 5, 2026
CVE-2026-25620
CVE-2026-25620
Description
An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). This issue uniquely affects version 17.4.0; earlier software releases are not exposed.
Affected products
1- Range: =17.4.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.