Impact
An actor with network access to the private High Availability (HA) interconnect can trigger sensitive HA peer functions without any authentication. This allows the attacker to elevate privileges and execute commands on the Edge units, effectively gaining full control of the device. The weakness is a missing authentication check, resulting in a privilege escalation vulnerability.
Affected Systems
The vulnerability affects Arista Networks VeloCloud Edge firmware releases 5.2.7.0 or later in the 5.2.x train, 6.1.5.0 or later in the 6.1.x train, 6.4.2 or later in the 6.4.x train, and 7.0.0 or later. All Edge units that have HA enabled and use the default HA interconnect configuration are impacted.
Risk and Exploitability
The CVSS score of 8.7 classifies this as high severity, while the EPSS score of less than 1% indicates a very low probability of exploitation in the wild. The vulnerability is not listed in CISA's KEV catalog, but the lack of authentication makes it attractive for internal or compromised network actors. Exploitation requires only network access to the private HA interconnect; no additional credentials are needed.
OpenCVE Enrichment