Memory Corruption Flaw in Arista Wi-Fi Access Points
CVE-2026-102167

9CRITICAL

Key Information:

Vendor
CVE Published:
6 October 2026

What is CVE-2026-102167?

A memory corruption vulnerability exists in Arista Wi-Fi access points affecting their wired uplink network endpoints. An unauthenticated attacker on the same network segment can exploit this flaw to crash the sensor service or potentially execute arbitrary code remotely, posing serious security risks to the network infrastructure.

Affected Version(s)

Wi-Fi Access Points Wi-Fi Access Points 22.0.0 <= 22.0.1F-32

Wi-Fi Access Points Wi-Fi Access Points 21.3.0 <= 21.3.0M-13

Wi-Fi Access Points Wi-Fi Access Points 1.0.0 < 21.3.0

References

CVSS V4

Score:
9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.