#arista

5 posts · Last used 15d

Back to Timeline
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 30, 2026
Arista addresses CVE-2026-16812, a critical vulnerability in VeloCloud Orchestrator actively exploited to gain unauthenticated remote code execution. #Arista #VeloCloud #Cybersecurity #CVE202616812 #RCE https://meterpreter.org/arista-velocloud-orchestrator-cve-2026-16812/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 27, 2026
CISA KEV additions on July 27 flag two known exploited vulnerabilities: Arista VeloCloud CVE-2026-16812 and FortiOS CVE-2025-68686. Patch both now. #CISA #KEV #Arista #VeloCloud #Fortinet #FortiOS #CVE #ExploitedInTheWild #Cybersecurity https://securityonline.info/cisa-kev-arista-velocloud-fortios/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
Daily CyberSecurity @DailyCyberSecurity@infosec.exchange · Jul 27, 2026
CVE-2026-16812, a VeloCloud command injection scored CVSS 10, is exploited in the wild. Patch VeloCloud Orchestrator now, plus two related bugs. #VeloCloud #Arista #CVE202616812 #CommandInjection #ExploitedInTheWild #VCO #SSRF #Cybersecurity https://securityonline.info/velocloud-command-injection-cve-2026-16812/?utm_source=mastodon&utm_medium=jetpack_social
0
0
0
dch :flantifa: :flan_hacker: @dch@bsd.network · Jun 07, 2026
Replying to @dch@bsd.network

I learned a few things about #Arista switches in the process.

  • there's a full linux OS underneath, you can run anything on it, including plain bash

  • the aboot loader also has bash

  • there are 2 versions of the aboot loader with different zip formats used for loading EOS

  • I couldn't upgrade the older boot loader to a newer one

  • but you can repackage the newer one in the older format yourself

Their API & config setup is a pleasure to use in comparison to the fs.com ones I've got locally. Much more accessible and comprehensive documentation.

1
0
0

You've seen all posts