CVE-2026-101153
8
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H
Summary
On affected versions of CloudVision Portal (on-premises) or CloudVision Sensor, a path traversal vulnerability exists. An authenticated user with sufficient high privileges could exploit this to extract unintended data from the Sensor.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Arista Networks | CloudVision Portal | 2026.2.0 | affected |
| Arista Networks | CloudVision Portal | 2026.1.0 <= 2026.1.2 | affected |
| Arista Networks | CloudVision Portal | 2025.3.0 <= 2025.3.3 | affected |
| Arista Networks | CloudVision Portal | 2025.2.0 <= 2025.2.3 | affected |
| Arista Networks | CloudVision Portal | 2025.1.0 <= 2025.1.4 | affected |
| Arista Networks | CloudVision Portal | 2024.3.0 <= 2024.3.3 | affected |
| Arista Networks | CloudVision Sensor | 1.4.0 <= 1.4.2 | affected |
| Arista Networks | CloudVision Sensor | 1.3.0 <= 1.3.1 | affected |
| Arista Networks | CloudVision Sensor | 1.0.0 < 1.3.0 | affected |
Weaknesses
- CWE-22: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Workarounds
There is no reliable mitigation other than stopping the sensor component completely, which would prevent all functionality dependent on it from working. To stop the sensor, execute the following command on the CloudVision or Sensor VM:
Stop sensor completely:
cvpi stop sensor
To undo this and to start the sensor again use:
Start sensor:
cvpi start sensor
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: partial
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.