Executive brief
Arista EOS, the operating system for Arista network switches, contains a vulnerability when the OpenConfig management interface is enabled. An attacker with low-level access can bypass security checks to change the device's configuration. This could lead to unauthorized network changes, service outages, or a complete loss of control over the affected hardware.
Technical details
A vulnerability in Arista EOS, specifically when configured with OpenConfig, allows a gNMI (gRPC Network Management Interface) Set request to be executed even when it should be rejected. This is classified as a missing authentication for a critical function (CWE-306). An attacker with network reachability and low-privileged credentials can issue these requests to apply unexpected configurations to the switch. This can result in high integrity and availability impacts as the switch configuration is modified without proper authorization. The vulnerability is triggered via the network and does not require user interaction.
Affected products
- Arista Networks EOS All versions with OpenConfig configured
Timeline
- 2026-06-04: advisory: Security advisory published by Arista Networks