CVE-2026-102167
7.5
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Summary
On affected Arista Wi-Fi access points, a memory corruption vulnerability exists in access point's wired uplink network endpoints. An unauthenticated attacker can crash the sensor service or potentially achieve remote code execution. Exploitation requires the attacker to be on the same network segment as the access point's wired uplink.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Arista Networks | Wi-Fi Access Points | 22.0.0 <= 22.0.1F-32 | affected |
| Arista Networks | Wi-Fi Access Points | 21.3.0 <= 21.3.0M-13 | affected |
| Arista Networks | Wi-Fi Access Points | 1.0.0 < 21.3.0 | affected |
Weaknesses
- CWE-121: CWE-121 Stack-based Buffer Overflow
Workarounds
There is no mitigation or workaround available.
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: total
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.