Lucene search

K

7328x Security Vulnerabilities

cve
cve

CVE-2023-24509

On affected modular platforms running Arista EOS equipped with both redundant supervisor modules and having the redundancy protocol configured with RPR or SSO, an existing unprivileged user can login to the standby supervisor as a root user, leading to a privilege escalation. Valid user...

9.3CVSS

7.6AI Score

0.0004EPSS

2023-04-13 08:15 PM
303
2
cve
cve

CVE-2021-28510

For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invalid Type-Length-Value (TLV) causes the PTP agent to restart. Repeated restarts of the service will make the service...

7.5CVSS

7.4AI Score

0.001EPSS

2023-01-26 09:15 PM
20
cve
cve

CVE-2020-15898

In Arista EOS malformed packets can be incorrectly forwarded across VLAN boundaries in one direction. This vulnerability is only susceptible to exploitation by unidirectional traffic (ex. UDP) and not bidirectional traffic (ex. TCP). This affects: EOS 7170 platforms version 4.21.4.1F and below...

5.3CVSS

5.2AI Score

0.001EPSS

2020-12-28 07:15 PM
52
2
cve
cve

CVE-2020-26569

In EVPN VxLAN setups in Arista EOS, specific malformed packets can lead to incorrect MAC to IP bindings and as a result packets can be incorrectly forwarded across VLAN boundaries. This can result in traffic being discarded on the receiving VLAN. This affects versions: 4.21.12M and below releases.....

5.9CVSS

5.7AI Score

0.001EPSS

2020-12-28 04:15 PM
48