Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.
The recommended resolution is to upgrade to the version indicated below and apply the hotfix at your earliest convenience. * 17.1 Upgrade * 17.0 (requires Hotfix) To resolve click the following link for instructions to either upgrading or apply a hotfix patch: Click here for the hotfix and instructions on resolving this issue https://wiki.edge.arista.com/index.php/Patch_-_Report_vulnerability
For the Reports application, for all Reports Users, disable Online Access. To do this: 2. As the NGFW administrator, log into the UI and go to the Reports application. 3. For all users with the Online Access checkbox (red box) enabled, uncheck it. 4. Click Save.
| Product | Vulnerable range | Fixed version | Advisory |
|---|---|---|---|
| Arista Networks Arista Edge Threat Management - Arista NG Firewall (NGFW) | <=17.0 | 17.0 | advisory ↗ |