Arista / Terminattr
4 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-24512 | On affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI requests could craft a request allowing it to update arbitrar… | HIGH | 8.8 | Apr 25, 2023 |
| CVE-2021-28509 | TerminAttr streams MACsec sensitive data in clear text to other authorized users in CVP | MEDIUM | 6.1 | May 26, 2022 |
| CVE-2021-28508 | TerminAttr streams IPsec sensitive data in clear text to other authorized users in CVP | MEDIUM | 6.8 | May 26, 2022 |
| CVE-2021-28501 | An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestri… | CRITICAL | 9.1 | Jan 14, 2022 |
| CVE-2019-17596 | golang: invalid public key causes panic in dsa.Verify | HIGH | 7.5 | Oct 24, 2019 |
Showing 1 to 4 of 4 CVEs