Vulnerability Details CVE-2021-28505
On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of an L2 or an L3 port/SVI, the VXLAN rule and subsequent ACL rules in that access list will ignore the specified IP protocol.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 43.0%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2021-28505
-
cpe:2.3:h:arista:ccs-710p-12:-
-
cpe:2.3:h:arista:ccs-710p-16p:-
-
cpe:2.3:h:arista:ccs-720xp-24y6:-
-
cpe:2.3:h:arista:ccs-720xp-24zy4:-
-
cpe:2.3:h:arista:ccs-720xp-48y6:-
-
cpe:2.3:h:arista:ccs-720xp-48zc2:-
-
cpe:2.3:h:arista:ccs-720xp-96zc2:-
-
cpe:2.3:h:arista:ccs-722xpm-48y4:-
-
cpe:2.3:h:arista:ccs-722xpm-48zy8:-
-
cpe:2.3:h:arista:dcs-7010tx-48:-
-
cpe:2.3:h:arista:dcs-7050cx3-32s:-
-
cpe:2.3:h:arista:dcs-7050cx3m-32s:-
-
cpe:2.3:h:arista:dcs-7050sx3-48c8:-
-
cpe:2.3:h:arista:dcs-7050sx3-48yc12:-
-
cpe:2.3:h:arista:dcs-7050sx3-48yc8:-
-
cpe:2.3:h:arista:dcs-7050sx3-96yc8:-
-
cpe:2.3:h:arista:dcs-7050tx3-48c8:-
-
cpe:2.3:o:arista:eos:4.26
-
cpe:2.3:o:arista:eos:4.26.0
-
cpe:2.3:o:arista:eos:4.26.1
-
cpe:2.3:o:arista:eos:4.26.1f
-
cpe:2.3:o:arista:eos:4.26.2
-
cpe:2.3:o:arista:eos:4.26.2f
-
cpe:2.3:o:arista:eos:4.26.3m
-
cpe:2.3:o:arista:eos:4.26.4
-
cpe:2.3:o:arista:eos:4.27
-
cpe:2.3:o:arista:eos:4.27.0
-
cpe:2.3:o:arista:eos:4.27.0f
-
cpe:2.3:o:arista:eos:4.27.1