Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-24547


On affected platforms running Arista MOS, the configuration of a BGP password will cause the password to be logged in clear text that can be revealed in local logs or remote logging servers by authenticated users, as well as appear in clear text in the device’s running config.


Published

2023-12-06T00:15:07.030

Last Modified

2024-11-21T07:48:05.987

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.9 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-319

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System arista mos ≤ 0.39.4 Yes
Hardware arista 7130 - No
Hardware arista 7130-16g3s - No
Hardware arista 7130-48g3s - No
Hardware arista 7130-96s - No

References