{
    "document": {
        "category": "security_advisory",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE",
                "url": "https://www.first.org/tlp/"
            }
        },
        "lang": "en-US",
        "publisher": {
            "category": "vendor",
            "contact_details": "support@arista.com",
            "name": "Arista PSIRT",
            "namespace": "https://www.arista.com"
        },
        "title": "Security Advisory Mt Philo",
        "tracking": {
            "current_release_date": "2024-02-14T16:45:58Z",
            "generator": {
                "engine": {
                    "name": "Arista Networks SecEng Service CSAF Generator"
                }
            },
            "id": "Arista-Security-Advisory-Mt-Philo",
            "initial_release_date": "2024-02-14T16:45:58Z",
            "revision_history": [
                {
                    "date": "2024-02-14T16:45:58Z",
                    "number": "1",
                    "summary": "Document created"
                }
            ],
            "status": "draft",
            "version": "1"
        }
    },
    "product_tree": {
        "branches": [
            {
                "category": "vendor",
                "name": "Arista Networks, Inc.",
                "branches": [
                    {
                        "category": "product_name",
                        "name": "Arista Edge Threat Management",
                        "branches": [
                            {
                                "category": "product_version",
                                "name": "17.0 and prior",
                                "product": {
                                    "name": "Arista Edge Threat Management 17.0 and prior",
                                    "product_id": "CSAFPID-1"
                                }
                            }
                        ]
                    }
                ]
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2024-27889",
            "ids": [
                {
                    "system_name": "Arista Bug ID",
                    "text": "NGFW-14509"
                }
            ],
            "notes": [
                {
                    "category": "description",
                    "text": "Multiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW). A user with advanced report application access rights can exploit the SQL injection, allowing them to execute commands on the underlying operating system with elevated privileges.",
                    "title": "CVE Description"
                },
                {
                    "category": "other",
                    "text": "If the NGFW has one or more Report application Report Users with Online Access enabled they are vulnerable.",
                    "title": "NGFW-14509: Required Config for Exploitation"
                }
            ],
            "product_status": {
                "fixed": [
                    "CSAFPID-1"
                ]
            },
            "references": [
                {
                    "category": "external",
                    "summary": "MITRE",
                    "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-27889"
                }
            ],
            "remediations": [
                {
                    "category": "vendor_fix",
                    "details": "Fixed in NGFW 17.1",
                    "product_ids": [
                        "CSAFPID-1"
                    ]
                },
                {
                    "category": "mitigation",
                    "details": "For the Reports application, for all Reports Users, disable Online Access.",
                    "product_ids": [
                        "CSAFPID-1"
                    ]
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "baseScore": 8.8,
                        "baseSeverity": "High",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                        "version": "3.1"
                    },
                    "products": [
                        "CSAFPID-1"
                    ]
                }
            ],
            "title": "CVE-2024-27889"
        }
    ]
}