On affected platforms running Arista MOS, the configuration of a BGP password will cause the password to be logged in clear text that can be revealed in local logs or remote logging servers by authenticated users, as well as appear in clear text in the device’s running config.
History

Wed, 28 May 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Arista

Published: 2023-12-05T23:29:01.375Z

Updated: 2025-05-28T15:54:35.342Z

Reserved: 2023-01-26T11:37:43.827Z

Link: CVE-2023-24547

cve-icon Vulnrichment

Updated: 2024-08-02T11:03:18.908Z

cve-icon NVD

Status : Modified

Published: 2023-12-06T00:15:07.030

Modified: 2024-11-21T07:48:05.987

Link: CVE-2023-24547

cve-icon Redhat

No data.