CVE-2014-4870: Brocade Vyatta 5400 Vrouter
High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.
/opt/vyatta/bin/sudo-users/vyatta-clear-dhcp-lease.pl on the Brocade Vyatta 5400 vRouter 6.4R(x), 6.6R(x), and 6.7R1 does not properly validate parameters, which allows local users to gain privileges by leveraging the sudo configuration.
Affected products
- Brocade Vyatta 5400 Vrouter
- Brocade Vyatta 5400 Vrouter Software: version 6.4 only; version 6.6 only; version 6.7 only
Published 2014-10-07. Last modified 2026-06-17.