VDB

CVE-2025-54549

CVE-2025-54549 PUBLISHED CVSS 5.900000095367432 MEDIUM

Cryptographic validation of upgrade images could be circumventing by dropping a specifically crafted file into the upgrade ISO

EPSS 0.01% · 0.7th percentile

Risk Scores

CVSS 3.1
5.900000095367432
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:N
EPSS Score
0.01%
0.7th percentile

Affected Products

VendorProductVersions
Arista NetworksDANZ Monitoring Fabric0, 0, 0
arista_networksdanz_monitoring_fabric0, 0, 0

Timeline

  • Oct 29, 2025 CVE Published
  • Oct 30, 2025 EPSS Score
  • Oct 30, 2025 Coalition ESS Score
  • Oct 30, 2025 CVE Updated
  • Nov 5, 2025 EPSS Score
  • Nov 10, 2025 EPSS Score
  • Nov 15, 2025 Coalition ESS Score
  • Nov 16, 2025 EPSS Score
  • Nov 21, 2025 EPSS Score
  • Nov 27, 2025 EPSS Score
  • Dec 3, 2025 EPSS Score
  • Dec 8, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›