Privilege Escalation Vulnerability in Arista NG Firewall
CVE-2024-12831
7.8HIGH
What is CVE-2024-12831?
CVE-2024-12831 identifies a privilege escalation vulnerability within the uvm_login module of the Arista NG Firewall. This flaw arises from incorrect authorization checks, enabling local attackers to escalate their privileges once they have executed low-privileged code on the targeted system. This vulnerability poses significant security risks, as it allows unauthorized access to resources that should be protected from the user, potentially compromising the integrity of the entire firewall installation. Users are encouraged to apply necessary patches and updates to mitigate the risk associated with this vulnerability, referenced under ZDI-CAN-24324.