Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
3166 articles · 183331 vulns · 37/41 feeds (7d)
← Back to list
8.3
CVE-2025-5088PATCHED
arista · eos / cloudvision exchange (cvx)

Arista CloudVision Exchange (CVX) Cluster Privilege Escalation via MCS Redis Session

Description

An authenticated Redis session could be used to obtain full root access to all servers in the CVX cluster. Note that this would require an attacker to have both network access to the Redis service on a CVX server and the Redis password. Please note that all Redis communication, including authentication, occurs over plaintext in the present day. TLS support is tracked under RFE1294850.

Affected Products

VendorProductVersions
aristaeos / cloudvision exchange (cvx)4.34.0F, 4.33.0M, 4.32.0M, 4.31.0M, 4.30.0

References

  • https://www.arista.com/en/support/advisories-notices/security-advisory/22868-security-advisory-0126(vendor-advisory)

Related News (2 articles)

Tier C
VulDB58d ago
CVE-2025-5088 | Arista EOS/CloudVision eXchange up to 4.34.1F Redis Service privileges management
→ No new info (linked only)
Tier B
BSI Advisories59d ago
[UPDATE] [hoch] Arista EOS: Mehrere Schwachstellen
→ No new info (linked only)
CVSS 3.18.3 HIGH
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
CISA KEV❌ No
Actively exploited❌ No
Patch available
4.31.0
CWECWE-269
PublishedJun 5, 2026
Last enriched58d agov2
Trending Score0
Source articles2
Independent2
Info Completeness9/14
Missing: epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-16812
VeloCloud Orchestrator OS Command Injection
Trending: 82
MEDIUMCVE-2026-7473EXPKEV
Arista EOS Unexpected Tunnel Protocol Decapsulation and Forwarding Bypass
NONECVE-2024-27891EXP
On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports.
NONECVE-2023-5502EXP
On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, a malicious supplicant may bypass authentication.
HIGHCVE-2025-8873EXP
Arista EOS Dataplane Denial of Service via Malformed IPsec Packet

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Jun 5, 2026
Discovered by ZDM
Jun 5, 2026
Updated: affectedVersions, severity
Jun 5, 2026
Patch Available
Jun 9, 2026

Version History

v2
Last enriched 58d ago
v2Tier C58d ago

Updated affected versions, changed severity to CRITICAL, and noted that there is no available exploit.

affectedVersionsseverity
via VulDB
v158d ago

Initial creation