CVE-2016-9012: Arista Cloudvision Portal
High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.
CloudVision Portal (CVP) before 2016.1.2.1 allows remote authenticated users to gain access to the internal configuration mechanisms via the management plane, related to a request to /web/system/console/bundle.
Affected products
- Arista Cloudvision Portal: up to and including 2016.1.2.0
Published 2017-01-23. Last modified 2026-06-17.