CVE-2026-25622
Arista Networks Arista Edge Threat Management - Arista Next Generation Firewall (NGFW), ng firewall
A Captive Portal Custom Handler command injection vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall (NGFW). On affected platforms, an administrative account logged into the user interface can exploit this input handling behavior to execute arbitrary platform shell commands.
- CVSS
- 7
- EPSS
- 9.88% 95.1% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.06