An issue has recently been discovered in Arista EOS where certain gNOI APIs incorrectly skip authorization and authentication which could potentially allow a factory reset of the device.
References
Link | Resource |
---|---|
https://www.arista.com/en/support/advisories-notices/security-advisories/13449-security-advisory-0071 | Exploit Mitigation Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2022-01-14 12:15
Updated : 2022-07-14 11:47
NVD link : CVE-2021-28506
Mitre link : CVE-2021-28506
JSON object : View
Products Affected
arista
- eos