Back to search
CVE-2023-24546
Published: Jun 13, 2023
Modified: Jan 6, 2025
PUBLISHED
Description
On affected versions of the CloudVision Portal improper access controls on the connection from devices to CloudVision could enable a malicious actor with network access to CloudVision to get broader access to telemetry and configuration data within the system than intended. This advisory impacts the Arista CloudVision Portal product when run on-premise. It does not impact CloudVision as-a-Service.
| Vendor | Product | Versions |
|---|---|---|
n/a | CloudVision | affected <2021.1.0, <2021.2.0, <2021.3.0, |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now