PT-2024-41920 · Arista · Eos

Published

2024-05-21

·

Updated

2026-06-04

·

CVE-2023-5502

CVSS v3.1

5.9

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Arista EOS (affected versions not specified)
Description On platforms where 802.1x authentication is configured on access or trunk ports and routing is enabled on the access VLAN of those ports, a malicious supplicant can bypass the 802.1x authentication requirement.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2023-5502

Affected Products

Eos