PT-2026-46397 · Arista Networks · Eos

Published

2026-06-04

·

Updated

2026-06-04

·

CVE-2024-27892

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H
Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the switch.

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2024-27892

Affected Products

Eos