Skip to main content

Vendor/product archive

arista / cloudvision_portal CVEs

Beta · best-effort

9 CVEs tagged to arista / cloudvision_portal0 Critical, 5 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2023-24546

Published Jun 13, 2023

On affected versions of the CloudVision Portal improper access controls on the connection from devices to CloudVision could enable a malicious actor with network access to CloudVi…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2022-29071

Published Aug 5, 2022

This advisory documents an internally found vulnerability in the on premises deployment model of Arista CloudVision Portal (CVP) where under a certain set of conditions, user pass…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-24333

Published Sep 22, 2020

A vulnerability in Arista’s CloudVision Portal (CVP) prior to 2020.2 allows users with “read-only” or greater access rights to the Configlet Management module to download files no…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-18181

Published Dec 19, 2019

In CloudVision Portal all releases in the 2018.1 and 2018.2 Code train allows users with read-only permissions to bypass permissions for restricted functionality via CVP API calls…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-18615

Published Dec 19, 2019

In CloudVision Portal (CVP) for all releases in the 2018.2 Train, under certain conditions, the application logs user passwords in plain text for certain API calls, potentially le…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-9012

Published Jan 23, 2017

CloudVision Portal (CVP) before 2016.1.2.1 allows remote authenticated users to gain access to the internal configuration mechanisms via the management plane, related to a request…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-9 of 9 CVEsPage 1 of 1