This advisory documents an internally found vulnerability in the on premises deployment model of Arista CloudVision Portal (CVP) where under a certain set of conditions, user passwords can be leaked in the Audit and System logs. The impact of this vulnerability is that the CVP user login passwords might be leaked to other authenticated users.
History

Tue, 02 Jun 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Arista

Published: 2022-08-05T16:47:17.137Z

Updated: 2026-06-02T14:06:37.357Z

Reserved: 2022-04-11T00:00:00.000Z

Link: CVE-2022-29071

cve-icon Vulnrichment

Updated: 2024-08-03T06:10:59.180Z

cve-icon NVD

Status : Modified

Published: 2022-08-05T17:15:08.500

Modified: 2024-11-21T06:58:26.187

Link: CVE-2022-29071

cve-icon Redhat

No data.