CVE-2025-54545
Unknown Unknown - Not Provided
BaseFortify

Publication date: 2025-10-29

Last updated on: 2025-10-30

Assigner: Arista Networks, Inc.

Description
On affected platforms, a restricted user could break out of the CLI sandbox to the system shell and elevate their privileges.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2025-10-29
Last Modified
2025-10-30
Generated
2026-06-16
AI Q&A
2025-10-30
EPSS Evaluated
2026-06-15
NVD
Affected Vendors & Products
Showing 4 associated CPEs
Vendor Product Version / Range
arista converged_cloud_fabric *
arista multi-cloud_director *
arista danz_monitoring_fabric *
arista cloudvision_appliance From 7.0.x (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-732 The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability allows a restricted user on affected platforms to escape the command-line interface (CLI) sandbox and gain access to the system shell, which can lead to privilege escalation.

Impact Analysis

The vulnerability can lead to unauthorized privilege escalation, allowing a restricted user to gain higher-level access to the system, potentially compromising system integrity, confidentiality, and availability.

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2025-54545. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart