CVE-2025-6980
7.5Arista Networks · Arista Edge Threat Management, Arista Next Generation Firewall
A vulnerability in the Captive Portal component of Arista Edge Threat Management allows unauthenticated attackers to access sensitive information.
Executive summary
The Arista Next Generation Firewall is vulnerable to an information disclosure flaw in its Captive Portal, which could allow unauthorized actors to access sensitive system data.
Vulnerability
This vulnerability is categorized as CWE-200, representing an exposure of sensitive information to an unauthorized actor. The CVSS vector indicates that the attack is network-based, requires no authentication, and involves no user interaction.
Business impact
The exposure of sensitive information can lead to a significant compromise of network security posture, potentially revealing configuration details or credentials that facilitate further attacks. With a CVSS score of 7.5, this vulnerability presents a high risk to organizational confidentiality. Unauthorized access to the management environment may lead to deeper network penetration or the exfiltration of sensitive telemetry data.
Remediation
Immediate Action: Upgrade Arista Edge Threat Management to version 17.4 or later immediately.
Proactive Monitoring: Review firewall and system access logs for unusual traffic patterns targeting the Captive Portal endpoint or unauthorized requests for sensitive configuration files.
Compensating Controls: Implement strict network segmentation or Web Application Firewall rules to restrict access to the Captive Portal from untrusted external networks until the update can be applied.
Exploitation status
Public Exploit Available: Yes, a public proof-of-concept repository is available via GitHub (BishopFox/CVE-2025-6980-check).
Analyst recommendation
Given the high CVSS severity and the existence of a public proof-of-concept, this vulnerability should be prioritized for remediation. Organizations using Arista Edge Threat Management must verify their current version and apply the 17.4 update as soon as possible to prevent potential information disclosure.
More Arista Networks CVEs
Sources
Originally found and disclosed by Arista would like to acknowledge and thank Gereon Huppertz working with Trend Zero Day Initiative for reporting CVE-2025, per the CVE Program record.