Security Advisory

CVE-2021-28506

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-01-14 19:04:50
Last updated 2024-09-16 22:09:48
Assigner Arista
CVSS score 9.1
State PUBLISHED

Description

An issue has recently been discovered in Arista EOS where certain gNOI APIs incorrectly skip authorization and authentication which could potentially allow a factory reset of the device.