在启用了门户(Captive Portal)功能的受影响 Arista 无线接入点上,未经身份验证的无线客户端可以向启用了门户功能的 SSID 发送精心构造的 HTTP 请求,导致门户服务崩溃。虽然该服务会自动重启,但持续的慢速攻击可导致门户服务出现持久的拒绝服务(DoS)状态。此漏洞无法实现远程代码执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Arista Networks | Wi-Fi Access Points | 22.0.0≤ 22.0.1F-32 |
affected |
21.3.0≤ 21.3.0M-13 |
affected | ||
1.0.0< 21.3.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Arista Networks | Wi-Fi Access Points | 22.0.0 ~ 22.0.1F-32 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-102159 | 9.8 CRITICAL | Security Advisory 0190 |
| CVE-2026-101155 | 9.1 CRITICAL | Security Advisory 0189 |
| CVE-2026-102161 | 8.8 HIGH | Security Advisory 0190 |
| CVE-2026-102162 | 8.8 HIGH | Security Advisory 0193 |
| CVE-2026-102163 | 8.8 HIGH | Security Advisory 0195 |
| CVE-2026-101157 | 8.7 HIGH | Security Advisory 0192 |
| CVE-2026-102155 | 8.5 HIGH | Security Advisory 0190 |
| CVE-2026-101156 | 8.4 HIGH | Security Advisory 0192 |
| CVE-2026-101158 | 8.4 HIGH | Security Advisory 0185 |
| CVE-2026-101153 | 8.0 HIGH | Security Advisory 0188 |
| CVE-2026-101152 | 8.0 HIGH | Security Advisory 0187 |
| CVE-2026-102167 | 7.5 HIGH | Security Advisory 0197 |
| CVE-2026-102165 | 7.5 HIGH | Security Advisory 0198 |
| CVE-2026-101154 | 7.2 HIGH | Security Advisory 0189 |
| CVE-2026-102160 | 7.2 HIGH | Security Advisory 0190 |
| CVE-2026-102156 | 6.8 MEDIUM | Security Advisory 0191 |
| CVE-2026-102158 | 6.5 MEDIUM | Security Advisory 0190 |
| CVE-2026-102168 | 6.5 MEDIUM | Security Advisory 0194 |
| CVE-2026-102157 | 5.9 MEDIUM | Security Advisory 0190 |
| CVE-2026-101151 | 4.3 MEDIUM | Security Advisory 0187 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet