vulnerability

security-advisory-0069

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:P/I:N/A:N)
Published
Oct 19, 2021
Added
Sep 4, 2024
Modified
Jan 14, 2026

Description

This advisory documents the impact of an internally found vulnerability in Arista's EOS software. The effect of this vulnerability is that, when using shared secret profiles the password configured for use by BiDirectional Forwarding Detection (BFD) will be leaked when displaying output over eAPI or other JSON outputs to authenticated users on the device. This issue was discovered internally and Arista is not aware of any malicious uses of this issue in customer networks.

Solution

upgrade-solution-cve-2021-28496
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.