PT-2026-107147 · Arista Networks · Cloudvision Cue

CVE-2026-102161

·

Publicado

2026-10-06

·

Atualizado

2026-10-06

CVSS v3.1

8.8

Alta

VetorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
An unauthenticated attacker located on an adjacent private network (or any attacker routed through a reverse proxy/load balancer that forwards client headers) can forge their source IP address and gain administrative session privileges on the CV-CUE backend.

Correção

Using Hardcoded Credentials

Authentication Bypass by Spoofing

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-102161

Produtos afetados

Cloudvision Cue