AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2021-28508

MEDIUM · CVSS 6.8 EPSS 0.49%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-05-26 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2021-28508
Severity
MEDIUM
CVSS
6.8
EPSS
0.49%

Original NVD Description

This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols. The impact of this vulnerability is that, in certain conditions, TerminAttr might leak IPsec sensitive data in clear text in CVP to other authorized users, which could cause IPsec traffic to be decrypted or modified by other authorized users on the device.