🔐 CVE Alert

CVE-2024-6858

MEDIUM 6.5

In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN.

CVSS Score
6.5
EPSS Score
0.2%
EPSS Percentile
39th

In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN.

CWE CWE-1287
Vendor arista networks
Product eos
Published Jun 4, 2026
Last Updated Jun 5, 2026
Stay Ahead of the Next One

Get instant alerts for arista networks eos

Be the first to know when new medium vulnerabilities affecting arista networks eos are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

Affected Versions

Arista Networks / EOS
4.31.0 ≤ 4.31.1F 4.30.0 ≤ 4.30.5M 4.29.0 ≤ 4.29.7M 4.28.10 ≤ 4.28.10.1M

References

NVD ↗ CVE.org ↗ EPSS Data ↗
arista.com: https://www.arista.com/en/support/advisories-notices/security-advisory/19917-security-advisory-0103