CVE-2026-73454

On affected platforms running Arista EOS with gRPC Network Security Interface (gNSI) Credentialz configured, a specially crafted request can cause unintended modifications to the target account's properties. This may result in the account being assigned elevated privileges or access beyond what an administrator intended.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-16 09:17

Updated : 2026-09-16 09:17


NVD link : CVE-2026-73454

Mitre link : CVE-2026-73454

CVE.ORG link : CVE-2026-73454


JSON object : View

Products Affected

No product.

CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')