Security Advisory
CVE-2021-28500
9.1
CRITICAL
Vulnerability Description
An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestricted access to the device for local users with nopassword configuration.
Published Date
January 14, 2022
Official Source
NIST NVD Advisory