CVE-2024-6858
Awaiting Analysis
Awaiting Analysis - Queue
Multi-Auth Bypass in Arista EOS 802.1X Mode
Publication date: 2026-06-04
Last updated on: 2026-06-05
Assigner: Arista Networks, Inc.
Description
Description
In Aristaβs EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
Currently, no data is known.
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1287 | The product receives input that is expected to be of a certain type, but it does not validate or incorrectly validates that the input is actually of the expected type. |