Arista EOS Vulnerability in gRPC Network Management Interface Allows Code Execution
CVE-2026-73464
8.7HIGH
What is CVE-2026-73464?
A security vulnerability exists in Arista EOS when the gRPC Network Management Interface (gNMI) is enabled. An authenticated client can exploit this issue via specially crafted requests to execute arbitrary code with root privileges on the switch, which poses significant risks to network security and device integrity.
Affected Version(s)
EOS 710 Series 4.29.0F < 4.30.0F
EOS 710 Series 4.30.0F < 4.31.0F
EOS 710 Series 4.31.0F < 4.32.0F
