存储型跨站脚本(XSS)漏洞可能允许经过认证且具有高权限的管理员在配置中存储恶意内容。当其他已认证用户查看或比较受影响的配置时,该恶意内容将在其浏览器中执行。成功利用此漏洞可使攻击者以受害者的已认证浏览器会话身份进行操作,从而访问敏感数据、修改配置或破坏受管理的无线服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Arista Networks | CloudVision CUE | 2025.2.0≤ 2026.2.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Arista Networks | CloudVision CUE | 2025.2.0 ~ 2026.2.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102159 | 9.8 CRITICAL | Security Advisory 0190 |
| CVE-2026-101155 | 9.1 CRITICAL | Security Advisory 0189 |
| CVE-2026-102161 | 8.8 HIGH | Security Advisory 0190 |
| CVE-2026-102162 | 8.8 HIGH | Security Advisory 0193 |
| CVE-2026-102163 | 8.8 HIGH | Security Advisory 0195 |
| CVE-2026-101157 | 8.7 HIGH | Security Advisory 0192 |
| CVE-2026-102155 | 8.5 HIGH | Security Advisory 0190 |
| CVE-2026-101158 | 8.4 HIGH | Security Advisory 0185 |
| CVE-2026-101153 | 8.0 HIGH | Security Advisory 0188 |
| CVE-2026-101152 | 8.0 HIGH | Security Advisory 0187 |
| CVE-2026-102167 | 7.5 HIGH | Security Advisory 0197 |
| CVE-2026-102165 | 7.5 HIGH | Security Advisory 0198 |
| CVE-2026-101154 | 7.2 HIGH | Security Advisory 0189 |
| CVE-2026-102160 | 7.2 HIGH | Security Advisory 0190 |
| CVE-2026-102156 | 6.8 MEDIUM | Security Advisory 0191 |
| CVE-2026-102158 | 6.5 MEDIUM | Security Advisory 0190 |
| CVE-2026-102168 | 6.5 MEDIUM | Security Advisory 0194 |
| CVE-2026-102169 | 6.5 MEDIUM | Security Advisory 0194 |
| CVE-2026-102157 | 5.9 MEDIUM | Security Advisory 0190 |
| CVE-2026-101151 | 4.3 MEDIUM | Security Advisory 0187 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet