Multiple security vulnerabilities affecting Arista EOS versions These vulnerabilities impact numerous EOS release trains have been identified in Arista EOS... These critical flaws allow unauthenticated attackers to execute arbitrary code and seize control of enterprise switches. No active exploitation or public proof-of-concept exploits for these flaws.
CVE-2026-73456 (CVSS 10): The first critical flaw involves a code injection bug in the gRPC Network Packet Sampling Interface. An unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting an attacker full administrative control over the compromised switch.[/subscribe_to_unlock_form]
Multiple security vulnerabilities affecting Arista EOS versions These vulnerabilities impact numerous EOS release trains have been identified in Arista EOS... These critical flaws allow unauthenticated attackers to execute arbitrary code and seize control of enterprise switches. No active exploitation or public proof-of-concept exploits for these flaws.
CVE-2026-73456 (CVSS 10): The first critical flaw involves a code injection bug in the gRPC Network Packet Sampling Interface. An unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting an attacker full administrative control over the compromised switch.[emaillocker id="1283"]
CVE-2026-73453 (CVSS 10): CVE-2026-73453 targets the P4Runtime service. By crafting a malicious packet during the initiation of a P4Runtime session, an attacker can obtain complete administrative control over the compromised switch.
CVE-2026-73447 (CVSS 9.1): This vulnerability permits authenticated users to execute operating system commands via crafted certificate rotation requests.
CVE-2026-86106 (CVSS 9.6): CVE-2026-86106 affects VeloCloud Edge devices and allows an unauthenticated attacker with local network access to the High Availability interconnect to trigger peer commands without verification.
These vulnerabilities collectively present a severe threat to network backbones, allowing attackers to gain administrative privileges over core switching gear.
The following reports contain further technical details:
[/emaillocker]