CVE-2024-12830
CVSS 3.1 Score 7.3 of 10 (high)
Details
Summary
CVE-2024-12830 is a newly disclosed vulnerability affecting Arista NG Firewall's custom_handler feature. This issue permits remote code execution, allowing unauthenticated attackers to execute arbitrary code on susceptible installations. The root cause lies in the custom_handler method's implementation, which fails to adequately validate user-supplied paths before using them in file operations. As a result, malicious actors can manipulate the path to traverse directories and ultimately execute code in the context of the www-data user. This vulnerability, identified as ZDI-CAN-24019, poses a significant risk and requires immediate attention from Arista NG Firewall users.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- NG Firewall
Affected Vendors
- Arista