Executive brief
A vulnerability in Arista EOS network switches allows unauthorized configuration changes when the OpenConfig management interface is enabled. An attacker with low-level access can bypass certain security checks to apply unintended settings to the device. This could lead to network outages, service disruptions, or unauthorized modifications to network traffic routing.
Technical details
A vulnerability in Arista EOS, specifically when the OpenConfig management interface is enabled, allows a gNMI Set request to be processed even when it should have been rejected. This is classified as a missing authentication for a critical function (CWE-306). An attacker with network access and low-level privileges (PR:L) can exploit this to modify the device configuration. The impact includes high integrity and availability loss as the switch may be reconfigured in a way that disrupts operations or alters security postures. The vulnerability is reachable over the network via the gNMI service.
Affected products
- Arista Networks EOS All versions with OpenConfig configured
Timeline
- 2026-06-04: advisory: Initial advisory publication by Arista Networks