40 entries matching arista — updated 2026-09-18 · vulnfeed
| CVE / ID | Title | Severity | CVSS | EPSS | Source | Date |
|---|---|---|---|---|---|---|
| CVE-2026-73453 | An unauthenticated P4Runtime (Programming Protocol-Independent Packet Processors Runtime) client can achieve arbitrary c | CRITICAL | 9.5 | 53%ile | NVD | 2026-09-16 |
| CVE-2026-73447 | A privileged attacker can exploit certain operation to execute arbitrary commands with root privileges, leading to full | CRITICAL | 9.4 | 54%ile | NVD | 2026-09-16 |
| CVE-2026-73456 | Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) | CRITICAL | 9.2 | 53%ile | NVD | 2026-09-16 |
| CVE-2026-73455 | On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, a specially crafte | HIGH | 8.9 | 40%ile | NVD | 2026-09-16 |
| CVE-2026-73464 | On affected platforms running Arista EOS with gRPC Network Management Interface (gNMI) enabled, a specially crafted requ | HIGH | 8.7 | 41%ile | NVD | 2026-09-16 |
| CVE-2026-73454 | On affected platforms running Arista EOS with gRPC Network Security Interface (gNSI) Credentialz configured, a specially | HIGH | 8.6 | 22%ile | NVD | 2026-09-16 |
| CVE-2026-73439 | On affected platforms running Arista EOS, if OpenConfig is configured and running a gNMI server on the system, and if gN | HIGH | 7.7 | 27%ile | NVD | 2026-09-16 |
| CVE-2026-73462 | On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by | HIGH | 7.1 | 16%ile | NVD | 2026-09-16 |
| CVE-2026-73446 | On affected platforms running Arista EOS with IS-IS configured on a broadcast interface, an unauthenticated attacker can | HIGH | 7.0 | 16%ile | NVD | 2026-09-16 |
| CVE-2026-73459 | On affected platforms running Arista EOS with IS-IS configured, an unauthenticated attacker who can inject a specially c | HIGH | 7.0 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-73460 | On affected platforms running Arista EOS with IS-IS graceful restart enabled, an unauthenticated attacker who can inject | HIGH | 7.0 | 8%ile | NVD | 2026-09-16 |
| CVE-2026-73450 | On affected platforms running Arista EOS with MLAG Dual Primary Detection configured, an unauthenticated attacker with a | HIGH | 7.0 | 3%ile | NVD | 2026-09-16 |
| CVE-2026-73435 | On affected platforms running Arista EOS with Open Shortest Path First version 2 (OSPFv2) configured, a specially crafte | HIGH | 7.0 | 6%ile | NVD | 2026-09-16 |
| CVE-2026-73438 | On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, an unauthenticated | HIGH | 7.0 | 12%ile | NVD | 2026-09-16 |
| CVE-2026-73445 | On affected platforms running Arista EOS, an issue with the gRPC Network Security Interface (gNSI) Authz Rotate RPC may | MEDIUM | 6.9 | 26%ile | NVD | 2026-09-16 |
| CVE-2026-73469 | When specific platforms are using Arista EOS with a loose Unicast Reverse Path Forwarding (uRPF) configuration, certain | MEDIUM | 6.9 | 22%ile | NVD | 2026-09-16 |
| CVE-2026-73463 | On affected platforms running Arista EOS, when multiple gRPC Network Security Interface (gNSI) transports are configured | MEDIUM | 6.0 | 10%ile | NVD | 2026-09-16 |
| CVE-2026-73436 | On affected platforms running Arista EOS with OSPFv2 and OSPFv2 segment routing configured, a specially crafted OSPFv2 p | MEDIUM | 6.0 | 15%ile | NVD | 2026-09-16 |
| CVE-2026-77190 | On affected platforms running Arista EOS, an unauthenticated attacker who is network-adjacent to the switch and able to | MEDIUM | 6.0 | 21%ile | NVD | 2026-09-16 |
| CVE-2026-73457 | Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) | MEDIUM | 6.0 | 25%ile | NVD | 2026-09-16 |
| CVE-2026-73443 | On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within | MEDIUM | 5.3 | 20%ile | NVD | 2026-09-16 |
| CVE-2026-2380 | On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sens | MEDIUM | 5.1 | 17%ile | NVD | 2026-09-16 |
| CVE-2026-19640 | On affected platforms running Arista EOS, an authenticated user with access to the gNMI (gRPC Network Management Interfa | LOW | 2.3 | 9%ile | NVD | 2026-09-16 |
| CVE-2026-73440 | On affected platforms running Arista EOS with Simple Network Management Protocol (SNMP) configured, SNMPv3 local or remo | LOW | 2.3 | 18%ile | NVD | 2026-09-16 |
| CVE-2026-73442 | On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged i | LOW | 2.1 | 12%ile | NVD | 2026-09-16 |
| CVE-2026-73458 | On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configured | CRITICAL | 9.2 | 32%ile | NVD | 2026-09-15 |
| CVE-2026-19655 | On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with | HIGH | 7.1 | 9%ile | NVD | 2026-09-15 |
| CVE-2026-19641 | On affected platforms running Arista EOS with password authentication configured, a specially crafted password can creat | MEDIUM | 6.9 | 28%ile | NVD | 2026-09-15 |
| CVE-2026-73437 | On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay configured, an unauthenti | MEDIUM | 6.5 | 10%ile | NVD | 2026-09-15 |
| CVE-2026-73451 | On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched Vi | MEDIUM | 6.3 | 8%ile | NVD | 2026-09-15 |
| CVE-2026-73465 | On affected platforms running Arista EOS, under certain circumstances plaintext private keys may be written in clear tex | MEDIUM | 6.0 | 1%ile | NVD | 2026-09-15 |
| CVE-2026-73466 | On affected platforms running Arista EOS, under certain circumstances user passwordss may be written in clear text to lo | MEDIUM | 6.0 | 1%ile | NVD | 2026-09-15 |
| CVE-2026-73467 | On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal A | MEDIUM | 6.0 | 1%ile | NVD | 2026-09-15 |
| CVE-2026-73444 | On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication configured, an unau | MEDIUM | 5.3 | 23%ile | NVD | 2026-09-15 |
| CVE-2026-73449 | On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured wi | MEDIUM | 5.9 | 4%ile | NVD | 2026-09-14 |
| Security Advisory 0160 | Security Advisory 0160 | UNKNOWN | — | — | Arista | 2026-09-09 |
| Security Advisory 0150 | Security Advisory 0150 | UNKNOWN | — | — | Arista | 2026-09-09 |
| Security Advisory 0148 | Security Advisory 0148 | UNKNOWN | — | — | Arista | 2026-08-31 |
| Security Advisory 0146 | Security Advisory 0146 | UNKNOWN | — | — | Arista | 2026-08-18 |
| Security Advisory 0143 | Security Advisory 0143 | UNKNOWN | — | — | Arista | 2026-06-23 |