← Back to feed Search feed

Arista vulnerabilities

40 entries matching arista — updated 2026-09-18 · vulnfeed

CVE / IDTitleSeverityCVSSEPSSSourceDate
CVE-2026-73453An unauthenticated P4Runtime (Programming Protocol-Independent Packet Processors Runtime) client can achieve arbitrary cCRITICAL9.553%ileNVD2026-09-16
CVE-2026-73447A privileged attacker can exploit certain operation to execute arbitrary commands with root privileges, leading to full CRITICAL9.454%ileNVD2026-09-16
CVE-2026-73456Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI)CRITICAL9.253%ileNVD2026-09-16
CVE-2026-73455On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, a specially crafteHIGH8.940%ileNVD2026-09-16
CVE-2026-73464On affected platforms running Arista EOS with gRPC Network Management Interface (gNMI) enabled, a specially crafted requHIGH8.741%ileNVD2026-09-16
CVE-2026-73454On affected platforms running Arista EOS with gRPC Network Security Interface (gNSI) Credentialz configured, a speciallyHIGH8.622%ileNVD2026-09-16
CVE-2026-73439On affected platforms running Arista EOS, if OpenConfig is configured and running a gNMI server on the system, and if gNHIGH7.727%ileNVD2026-09-16
CVE-2026-73462On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by HIGH7.116%ileNVD2026-09-16
CVE-2026-73446On affected platforms running Arista EOS with IS-IS configured on a broadcast interface, an unauthenticated attacker canHIGH7.016%ileNVD2026-09-16
CVE-2026-73459On affected platforms running Arista EOS with IS-IS configured, an unauthenticated attacker who can inject a specially cHIGH7.06%ileNVD2026-09-16
CVE-2026-73460On affected platforms running Arista EOS with IS-IS graceful restart enabled, an unauthenticated attacker who can injectHIGH7.08%ileNVD2026-09-16
CVE-2026-73450On affected platforms running Arista EOS with MLAG Dual Primary Detection configured, an unauthenticated attacker with aHIGH7.03%ileNVD2026-09-16
CVE-2026-73435On affected platforms running Arista EOS with Open Shortest Path First version 2 (OSPFv2) configured, a specially crafteHIGH7.06%ileNVD2026-09-16
CVE-2026-73438On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, an unauthenticatedHIGH7.012%ileNVD2026-09-16
CVE-2026-73445On affected platforms running Arista EOS, an issue with the gRPC Network Security Interface (gNSI) Authz Rotate RPC may MEDIUM6.926%ileNVD2026-09-16
CVE-2026-73469When specific platforms are using Arista EOS with a loose Unicast Reverse Path Forwarding (uRPF) configuration, certain MEDIUM6.922%ileNVD2026-09-16
CVE-2026-73463On affected platforms running Arista EOS, when multiple gRPC Network Security Interface (gNSI) transports are configuredMEDIUM6.010%ileNVD2026-09-16
CVE-2026-73436On affected platforms running Arista EOS with OSPFv2 and OSPFv2 segment routing configured, a specially crafted OSPFv2 pMEDIUM6.015%ileNVD2026-09-16
CVE-2026-77190On affected platforms running Arista EOS, an unauthenticated attacker who is network-adjacent to the switch and able to MEDIUM6.021%ileNVD2026-09-16
CVE-2026-73457Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI)MEDIUM6.025%ileNVD2026-09-16
CVE-2026-73443On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker withinMEDIUM5.320%ileNVD2026-09-16
CVE-2026-2380On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensMEDIUM5.117%ileNVD2026-09-16
CVE-2026-19640On affected platforms running Arista EOS, an authenticated user with access to the gNMI (gRPC Network Management InterfaLOW2.39%ileNVD2026-09-16
CVE-2026-73440On affected platforms running Arista EOS with Simple Network Management Protocol (SNMP) configured, SNMPv3 local or remoLOW2.318%ileNVD2026-09-16
CVE-2026-73442On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged iLOW2.112%ileNVD2026-09-16
CVE-2026-73458On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configuredCRITICAL9.232%ileNVD2026-09-15
CVE-2026-19655On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with HIGH7.19%ileNVD2026-09-15
CVE-2026-19641On affected platforms running Arista EOS with password authentication configured, a specially crafted password can creatMEDIUM6.928%ileNVD2026-09-15
CVE-2026-73437On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay configured, an unauthentiMEDIUM6.510%ileNVD2026-09-15
CVE-2026-73451On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched ViMEDIUM6.38%ileNVD2026-09-15
CVE-2026-73465On affected platforms running Arista EOS, under certain circumstances plaintext private keys may be written in clear texMEDIUM6.01%ileNVD2026-09-15
CVE-2026-73466On affected platforms running Arista EOS, under certain circumstances user passwordss may be written in clear text to loMEDIUM6.01%ileNVD2026-09-15
CVE-2026-73467On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal AMEDIUM6.01%ileNVD2026-09-15
CVE-2026-73444On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication configured, an unauMEDIUM5.323%ileNVD2026-09-15
CVE-2026-73449On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured wiMEDIUM5.94%ileNVD2026-09-14
Security Advisory 0160Security Advisory 0160UNKNOWNArista2026-09-09
Security Advisory 0150Security Advisory 0150UNKNOWNArista2026-09-09
Security Advisory 0148Security Advisory 0148UNKNOWNArista2026-08-31
Security Advisory 0146Security Advisory 0146UNKNOWNArista2026-08-18
Security Advisory 0143Security Advisory 0143UNKNOWNArista2026-06-23