VulnSea

EOS vulnerabilities

CVEs whose affected-version data names the EOS package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

42 CVEsRSS

CVE-2026-73458High· 8.2
1w ago

On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configured, a specially crafted packet can cause the BFD session(s) to go down

On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configured, a specially crafted packet can cause the BFD session(s) to go down. This may result in undesirable network changes …

TwilightArista Networks · EOSEPSS 0.38%via NVD
CVE-2026-73467Medium· 6.3
1w ago

On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal Access Controller Access-Control System Plus (TACACS+) servers

On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal Access Controller Access-Control System Plus (TACACS+) servers

SunlitArista Networks · EOSEPSS 0.09%via NVD
CVE-2026-73466Medium· 6.3
1w ago

On affected platforms running Arista EOS, under certain circumstances user passwordss may be written in clear text to log files during operations when specialized non-standard debugging trace levels are explicitly enabled. To exploit th…

On affected platforms running Arista EOS, under certain circumstances user passwordss may be written in clear text to log files during operations when specialized non-standard debugging trace levels are explicitly enabled. To exploit th…

SunlitArista Networks · EOSEPSS 0.09%via NVD
CVE-2026-73465Medium· 6.3
1w ago

On affected platforms running Arista EOS, under certain circumstances plaintext private keys may be written in clear text to log files during operations when specialized non-standard debugging trace levels are explicitly enabled. To exp…

On affected platforms running Arista EOS, under certain circumstances plaintext private keys may be written in clear text to log files during operations when specialized non-standard debugging trace levels are explicitly enabled. To exp…

SunlitArista Networks · EOSEPSS 0.09%via NVD
CVE-2026-73451Medium· 4.8
1w ago

On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched Virtual Interfaces (SVI) in shared mode, restarting of the secondary switchcard forwarding agent or insertion of second…

On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched Virtual Interfaces (SVI) in shared mode, restarting of the secondary switchcard forwarding agent or insertion of second…

SunlitArista Networks · EOSEPSS 0.18%via NVD
CVE-2026-19641Medium· 5.3
1w ago

On affected platforms running Arista EOS with password authentication configured, a specially crafted password can create orphan authentication sessions

On affected platforms running Arista EOS with password authentication configured, a specially crafted password can create orphan authentication sessions. Repeated exploitation of this issue can exhaust available authentication resources,…

SunlitArista Networks · EOSEPSS 0.34%via NVD
CVE-2026-77191Low· 2.6
1w ago

An authenticated supplicant on an adjacent network may bypass intended network authorization policy and send unrestricted traffic during a brief window (milliseconds to seconds) between the completion of the authentication phase and the …

An authenticated supplicant on an adjacent network may bypass intended network authorization policy and send unrestricted traffic during a brief window (milliseconds to seconds) between the completion of the authentication phase and the …

SunlitArista Networks · EOSEPSS 0.14%via NVD
CVE-2026-75943Low· 2.6
1w ago

A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout

A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout. During this window, the supplicant's traffic may pass w…

SunlitArista Networks · EOSEPSS 0.13%via NVD
CVE-2026-75944Low· 2.6
1w ago

A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system

A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system. If the AclAgent subsequently restarts, this stale entry may be applied to new supplicants, resulting in incorrect access contro…

SunlitArista Networks · EOSEPSS 0.15%via NVD
CVE-2026-75945Low· 2.6
1w ago

A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.

A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued.

SunlitArista Networks · EOSEPSS 0.13%via NVD
CVE-2026-73449Medium· 5.9
1w ago

On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured with dynamic authorization, a low-privileged attacker on an adjacent network segment who induces a RADIUS packet throug…

On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured with dynamic authorization, a low-privileged attacker on an adjacent network segment who induces a RADIUS packet throug…

SunlitArista Networks · EOSEPSS 0.14%via NVD
CVE-2024-6387High· 8.1PoC
2y ago

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd)

A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lead sshd to handle some signals in an unsafe manner. An unauthenticated, remote attacker may be able to trigger it by f…

Midnightopenbsd · opensshEPSS 100%via NVD
EOS vulnerabilities (CVEs) — page 2 · VulnSea