On affected platforms running Arista EOS with gRPC Network Security Interface (gNSI) Credentialz configured, a specially crafted request can cause unintended modifications to the target account's properties. This may result in the account being assigned elevated privileges or access beyond what an administrator intended.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-16 09:17
Updated : 2026-09-16 09:17
NVD link : CVE-2026-73454
Mitre link : CVE-2026-73454
CVE.ORG link : CVE-2026-73454
JSON object : View
Products Affected
No product.
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')
