CyberRota Analysis
AI-GeneratedP4 Search versions prior to 2026.4.2 are vulnerable due to improper handling of blank service authentication tokens, allowing unauthenticated attackers with network access to gain full application privileges. This critical vulnerability could lead to complete compromise of both P4 Search and the associated P4 Server. Organizations utilizing P4 Search should prioritize patching to mitigate the risk of unauthorized access and potential data breaches.
Original NVD Description
P4 Search prior to 2026.4.2 does not fail securely when its service authentication token is blank. In affected configurations, an unauthenticated attacker with network access can obtain the highest application privilege, potentially leading to compromise of P4 Search and the connected P4 Server.