CVE-2026-16812
Arista VeloCloud Orchestrator
EPSS 1%KEV
Arista VeloCloud Orchestrator On-Prem contains an OS command injection vulnerability that may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator.
- Published
- —
- Last modified
- —
- CISA KEV
- Yes
- Ransomware use
- Not indicated