← nejvýznamnější zprávy · všechny zprávy

SPOJENO PŘES CVE KEV ✓ EPSS 0.00

Arista Networks security advisory (AV26-947)

Serial number: AV26-947Date: September 22, 2026 As of September 22, 2026, Arista Networks is affected by a vulnerability in the following product: VeloCloud Orchestrator (VCO) On-Prem Versions 5.2.0 to 5.2.3.15 Versions 6.1.0 to 6.1.3.7 Versions 6.4.0 to 6.4.2.7 Versions 7.0.0 to 7.0.0.2 Open-source reporting indicates that CVE-2026-93952 is being exploited in the wild. The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they…

Číst originál na Cyber Centre Kanada →

2 zprávy z 2 zdrojů · první 22. 9. 02:00 · poslední 22. 9. 15:14 CZ · EN/orig

Arista Networks Arista CA US

tg: zneužíváno tg: zranitelnost

CVE v události 1

CVEhodnoceníKEVEPSS
CVE-2026-93952 10.0 3.1 · Arista 9.5 4.0 · Arista KEV ✓ 0.00

Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.

Jak se o tom psalo 2

  1. · Cyber Centre Kanada CA nadpis události

    Arista Networks security advisory (AV26-947)

    Serial number: AV26-947Date: September 22, 2026 As of September 22, 2026, Arista Networks is affected by a vulnerability in the following product: VeloCloud Orchestrator (VCO) On-Prem Versions 5.2.0 to 5.2.3.15 Versions 6.1.0 to 6.1.3.7 Versions 6.4.0 to 6.4.2.7 Versions 7.0.0 to 7.0.0.2 Open-source reporting indicates that CVE-2026-93952 is being exploited in the wild. The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they…

  2. · CISA KEV US

    Arista VeloCloud Orchestrator Improper Input Validation Vulnerability (CVE-2026-93952)

    CISA added CVE-2026-93952 to the Known Exploited Vulnerabilities catalog. Affected product: Arista VeloCloud Orchestrator. Remediation due date: 2026-09-25.