---
cve: "CVE-2026-86106"
severity: "HIGH"
cvss: 8.7
epss: "18.3%"
vendor: "Arista Networks"
kev: false
exploited: false
published: "2026-09-16 11:16:43"
tags: [cve, security, high]
source: tsecurity.de CVE-Dossier
exported: "2026-09-19T16:33:15+02:00"
---

# CVE-2026-86106

> 8.7 HIGH

## Beschreibung

An unauthenticated actor with network access to the private HA interconnect may trigger sensitive HA peer functions without verification. This could result in elevated command execution on Edge units where HA is enabled.

## CVSS-Vektor

```
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Benachbart | warn |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |

## Referenzen

- <https://www.arista.com/en/support/advisories-notices/security-advisory/24735-security-advisory-0179>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2026-86106) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
