在受影响的 Arista 接入点中,若配置了 VXLAN 隧道和 L2-proxy(这是 VESPA 用例特有的特定配置),与该隧道化 SSID 关联的无线客户端可以发送构造的恶意数据包,从而导致接入点在网络流量中泄露内存内容。该漏洞不具备内存写入原语,也无法实现远程代码执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Arista Networks | Wi-Fi Access Points | 22.0.0≤ 22.0.1F-32 |
affected |
21.3.0≤ 21.3.0M-13 |
affected | ||
1.0.0< 21.3.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Arista Networks | Wi-Fi Access Points | 22.0.0 ~ 22.0.1F-32 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102159 | 9.8 CRITICAL | Security Advisory 0190 |
| CVE-2026-101155 | 9.1 CRITICAL | Security Advisory 0189 |
| CVE-2026-102161 | 8.8 HIGH | Security Advisory 0190 |
| CVE-2026-102162 | 8.8 HIGH | Security Advisory 0193 |
| CVE-2026-102163 | 8.8 HIGH | Security Advisory 0195 |
| CVE-2026-101157 | 8.7 HIGH | Security Advisory 0192 |
| CVE-2026-102155 | 8.5 HIGH | Security Advisory 0190 |
| CVE-2026-101156 | 8.4 HIGH | Security Advisory 0192 |
| CVE-2026-101158 | 8.4 HIGH | Security Advisory 0185 |
| CVE-2026-101152 | 8.0 HIGH | Security Advisory 0187 |
| CVE-2026-101153 | 8.0 HIGH | Security Advisory 0188 |
| CVE-2026-102167 | 7.5 HIGH | Security Advisory 0197 |
| CVE-2026-102165 | 7.5 HIGH | Security Advisory 0198 |
| CVE-2026-101154 | 7.2 HIGH | Security Advisory 0189 |
| CVE-2026-102160 | 7.2 HIGH | Security Advisory 0190 |
| CVE-2026-102156 | 6.8 MEDIUM | Security Advisory 0191 |
| CVE-2026-102168 | 6.5 MEDIUM | Security Advisory 0194 |
| CVE-2026-102169 | 6.5 MEDIUM | Security Advisory 0194 |
| CVE-2026-102158 | 6.5 MEDIUM | Security Advisory 0190 |
| CVE-2026-102157 | 5.9 MEDIUM | Security Advisory 0190 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet