Vulnerabilities > Arista > Terminattr

DATE CVE VULNERABILITY TITLE RISK
2022-05-26 CVE-2021-28508 Cleartext Transmission of Sensitive Information vulnerability in Arista EOS and Terminattr
This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols.
network
low complexity
arista CWE-319
6.1
2022-05-26 CVE-2021-28509 Cleartext Transmission of Sensitive Information vulnerability in Arista EOS and Terminattr
This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols.
network
low complexity
arista CWE-319
6.1
2022-01-14 CVE-2021-28501 Unspecified vulnerability in Arista Terminattr 1.7.2
An issue has recently been discovered in Arista EOS where the incorrect use of EOS's AAA API’s by the OpenConfig and TerminAttr agents could result in unrestricted access to the device for local users with nopassword configuration.
local
low complexity
arista
7.8
2019-10-24 CVE-2019-17596 Interpretation Conflict vulnerability in multiple products
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public key.
7.5