216.73.216.233

CVE-2024-27890

· Published 04/06/2026 23:16 · Modified 05/06/2026 15:02

Labels: CVE-2024-27890 2026-06-04CVE-2024-27890CWE-306[email protected]

Essential information

Published
04/06/2026 23:16
Modified
05/06/2026 15:02
Author
Creator
CVSS
7.2 HIGH (v3) 7.2 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the switch.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
arista / arista eos cpe:2.3:a:arista:arista_eos:*:*:*:*:*:*:*:*

References