ctipilot.ch

Arista VeloCloud Orchestrator on-prem unauthenticated OS command injection (exploited, KEV)

cve · CVE-2026-16812

Coverage timeline
1
first 2026-07-28 → last 2026-07-28
Peak priority
critical
1 critical
Sources cited
2
2 hosts
Sections touched
1
trending-vulnerabilities
Co-occurring entities
0
no co-occurrence
ATT&CK techniques
3
pinned v19.1 · see below

Hunting pivots

ATT&CK techniques
Affected products
Arista VeloCloud Orchestrator On-Prem

ATT&CK techniques

3 techniques observed across 1 entry — derived from entry metadata and body evidence, never asserted without a published entry behind it · pinned to MITRE ATT&CK v19.1 · compare on the matrix · Navigator layer (JSON)

Initial Access TA0001

T1190Exploit Public-Facing Application×1

Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network. The weakness in the system can be a software bug, a temporary glitch, or a misconfiguration.

Evidence: 2026-07-28/cve-2026-16812-arista-velocloud-orchestrator-exploited · ATT&CK page ↗

Execution TA0002

T1059Command and Scripting Interpreter×1

Adversaries may abuse command and script interpreters to execute commands, scripts, or binaries. These interfaces and languages provide ways of interacting with computer systems and are a common feature across many different platforms. Most systems come with some built-in command-line interface and scripting capabilities, for example, macOS and Linux distributions include some flavor of Unix Shell while Windows installations include the Windows Command Shell and PowerShell.

Evidence: 2026-07-28/cve-2026-16812-arista-velocloud-orchestrator-exploited · ATT&CK page ↗

T1072Software Deployment Tools×1

Adversaries may gain access to and use centralized software suites installed within an enterprise to execute commands and move laterally through the network. Configuration management and software deployment applications may be used in an enterprise network or cloud environment for routine administration purposes. These systems may also be integrated into CI/CD pipelines. Examples of such solutions include: SCCM, HBSS, Altiris, AWS Systems Manager, Microsoft Intune, Azure Arc, and GCP Deployment Manager.

Evidence: 2026-07-28/cve-2026-16812-arista-velocloud-orchestrator-exploited · ATT&CK page ↗

Lateral Movement TA0008

T1072Software Deployment Tools×1

Adversaries may gain access to and use centralized software suites installed within an enterprise to execute commands and move laterally through the network. Configuration management and software deployment applications may be used in an enterprise network or cloud environment for routine administration purposes. These systems may also be integrated into CI/CD pipelines. Examples of such solutions include: SCCM, HBSS, Altiris, AWS Systems Manager, Microsoft Intune, Azure Arc, and GCP Deployment Manager.

Evidence: 2026-07-28/cve-2026-16812-arista-velocloud-orchestrator-exploited · ATT&CK page ↗

Story timeline

  1. 2026-07-28CVE-2026-16812 — Arista VeloCloud Orchestrator on-prem: unauthenticated OS command injection on an interface exposed by default, confirmed exploited (CVSS 10.0)
    trending-vulnerabilitiesArista patches an actively exploited unauthenticated command-injection flaw in on-prem VeloCloud Orchestrator

Where this entity is cited

  • trending-vulnerabilities1

Source distribution

  • arista.com1 (50%)
  • cisa.gov1 (50%)

explore in graph

Entries about Arista VeloCloud Orchestrator on-prem unauthenticated OS command injection (exploited, KEV) (1)

2026-07-28 · view entry permalink →

CRITICALCVE-2026-16812exploitedNATOA1

CVE-2026-16812 — Arista VeloCloud Orchestrator on-prem: unauthenticated OS command injection on an interface exposed by default, confirmed exploited (CVSS 10.0)

Arista disclosed CVE-2026-16812 on 2026-07-27: an improper-neutralisation flaw (CWE-78, OS command injection) in on-prem VeloCloud Orchestrator (VCO) that lets a remote attacker reach "privileged internal functionality" and act on the orchestrator host, scored 10.0 on both CVSS 3.1 and CVSS 4.0 (Arista, 2026-07-27). Two properties make this worse than the score alone suggests. First, there is no exploitation precondition to remove: Arista states the interface "is exposed by default", that "[t]here is no configuration that can prevent the exposure", and that tenant or operator credentials are not required — the only reachability control is network placement (Arista, 2026-07-27). Second, VCO is a management plane, not an edge device: Arista's own post-remediation guidance warns that "[c]ompromises to the VCO platform may allow attackers access to the VeloCloud Edge devices as well", so the blast radius is the managed SD-WAN fleet rather than one appliance (Arista, 2026-07-27).

Exploitation is not a projection. Arista states the issue "was discovered externally and is known to be actively exploited", and CISA added CVE-2026-16812 to the Known Exploited Vulnerabilities catalog on the day of disclosure (CISA, 2026-07-27). Affected are on-prem VCO 5.2.x before 5.2.3.14, 6.1.x before 6.1.3.4, 6.4.x before 6.4.2.4 and 7.0.x before 7.0.0.1; Arista's Resolution section enumerates fixed builds for the 5.2, 6.1 and 6.4 trains only, so 7.0.x operators should confirm their target release with the vendor rather than assume one. Hosted and Dedicated orchestrators were patched ahead of the advisory, and VeloCloud Gateway, VeloCloud Edge and the Arista EOS-based product lines are not in scope (Arista, 2026-07-27).

Detection, telemetry class first: the orchestrator's own web-access and reverse-proxy logs are the primary surface — Arista directs operators to requests carrying unusual URL-like path components, encoded characters or references to local or internal services, and to elevated request rates against the management interface. Pair that with backend application and system logs around the same timestamps for command execution, file creation, database export or archive artifacts that no administrator session accounts for, and with egress telemetry for outbound HTTP/HTTPS originating from the orchestrator host itself (Arista, 2026-07-27). The discriminator that carries the most weight here is directionality and provenance rather than payload shape: a management appliance legitimately receives administrative sessions and pushes configuration to its managed Edge devices, but it has little reason to originate arbitrary outbound web traffic, and configuration changes or privileged maintenance actions that correlate to no operator session are the anomaly Arista itself flags — the vendor states plainly that no single definitive indicator of compromise exists for this issue, so sequence and correlation carry the detection rather than any one artifact. Hardening is limited to what network placement can buy: Arista's interim control is restricting the web interface to trusted administrative networks, since the exposed functionality cannot be switched off in configuration.

This issue was discovered externally and is known to be actively exploited.

VCO is exposed by default. There is no configuration that can prevent the exposure. A successful attack requires network access to the VCO web interface. VCO tenant or operator credentials are not required for this exposure.

Compromises to the VCO platform may allow attackers access to the VeloCloud Edge devices as well.

Arista Networks (Security Advisory 0144) 2026-07-27
vulnerability28 Jul 04:45Zmulti-sourceOpen finding ↗