AUGUST 26, 2026
Live Feed
Back to database
Case File

CVE-2026-25620

MEDIUM · CVSS 6 EPSS 9.88%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-06-05 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.0. See the original NVD description below for full technical details.

CVE
CVE-2026-25620
Severity
MEDIUM
CVSS
6
EPSS
9.88%

Original NVD Description

An encrypted password command injection vulnerability exists in the Captive Portal application framework of Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). This issue uniquely affects version 17.4.0; earlier software releases are not exposed.

Related CVEs

Other vulnerabilities affecting the same vendor(s)