Podatności / CISA KEV · AKTYWNIE WYKORZYSTYWANE · CVSS 9.5
CVE-2026-93952 · Arista VeloCloud Orchestrator Improper Input Validation Vulnerability
- Identyfikator
- CVE-2026-93952
- CVSS
- 9.5 CRITICAL
- CISA KEV
- AKTYWNIE WYKORZYSTYWANE
- Producent
- Arista
- Produkt
- VeloCloud Orchestrator
- Dodano do KEV
- 2026-09-22
- Termin CISA
- 2026-09-25
Arista VeloCloud Orchestrator (VCO) on-prem contains an improper input validation vulnerability that may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.