Privilege Escalation Vulnerability in Arista CloudVision Systems
CVE-2025-0505
What is CVE-2025-0505?
A privilege escalation vulnerability exists in Arista CloudVision systems, which allows unauthorized users to leverage the Zero Touch Provisioning feature to gain administrative privileges. This could result in enhanced permissions enabling them to monitor or manipulate the state of devices managed on the platform. It's important to note that CloudVision as-a-Service is not impacted by this vulnerability, emphasizing the need for users of on-premise deployments to apply necessary security measures.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
CloudVision Portal 2024.2.0 <= 2024.2.1
CloudVision Portal 2024.3.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
