Filter
AND
10
0
3/3/2016
12/24/2016
10/16/2017
8/7/2018
5/30/2019
3/21/2020
1/11/2021
11/3/2021
8/26/2022
6/18/2023
4/8/2024

Arista EOSOn affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been rejected.

7.7
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall uvm_login Incorrect Authorization Privilege Escalation Vulnerability

7.8
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability

8.3
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability

8.1
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista Edge Threat Management - Arista NG FirewallZDI-24-1717: (0Day) Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability

7.2
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ExecManagerImpl Command Injection Remote Code Execution Vulnerability

7.2
First published (updated )

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability

8.1
First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-24-1718: (0Day) Arista NG Firewall custom_handler Directory Traversal Remote Code Execution Vulnerability

8.1
First published (updated )

Arista Edge Threat Management - Arista NG FirewallZDI-24-1719: (0Day) Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability

8.3
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista Edge Threat Management - Arista NG Firewall(0Day) Arista NG Firewall ReportEntry SQL Injection Arbitrary File Read and Write Vulnerability

8.3
First published (updated )

Arista Edge Threat ManagementMultiple SQL Injection vulnerabilities exist in the reporting application of the Arista Edge Threat Management - Arista NG Firewall (NGFW).

8.8
EPSS
0.04%
First published (updated )

Arista EOSOn affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload.

7.5
First published (updated )

Arista CloudVision PortalOn affected versions of the CloudVision Portal improper access controls on the connection from devic…

8.1
First published (updated )

Arista EOSOn the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista EOSOn affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI re…

8.8
First published (updated )

Arista CloudEOSOn affected platforms running Arista CloudEOS a size check bypass issue in the Software Forwarding Engine (Sfe) may allow buffer over reads in later code. Additionally, depending on configured options this may cause a recomputation of the TCP checksum ...

7.5
First published (updated )

Arista CloudEOSOn affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch.

7.5
First published (updated )

Arista EOSOn affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in the snmpd process.

7.5
First published (updated )

Arista EOSFor certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invalid Type-Length-Value (TLV) causes the PTP agent to restart. Repeated restarts of the service will make the service unavailable.

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista EOSOn Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which matches on “vxlan” as protocol then that rule and subsequent rules ( rules declared after it in ACL ) do not match on IP protocol fi ...

7.5
First published (updated )

Arista EOSOn affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of an L2 or an L3 port/SVI, the VXLAN rule and subsequent ACL rules in that access list will ignore the specified IP protocol.

7.5
First published (updated )

Arista EOSAn issue has recently been discovered in Arista EOS where, under certain conditions, the service ACL configured for OpenConfig gNOI and OpenConfig RESTCONF might be bypassed, which results in the denied requests being forwarded to the agent.

7.1
First published (updated )

Arista Metamako Operating SystemIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, un…

8.4
First published (updated )

Arista Metamako Operating SystemIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, un…

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Arista Metamako Operating SystemIn Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, us…

8.7
First published (updated )

Arista EOSAn issue with ARP packets in Arista’s EOS affecting the 7800R3, 7500R3, and 7280R3 series of product…

7.4
First published (updated )

Arista EOSArista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F …

7.5
First published (updated )

Arista CloudVision ExchangeArista’s CloudVision eXchange (CVX) server before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.2…

7.5
First published (updated )

Arista EOSArista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F …

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203