Known Exploited Vulnerability
6.9
MEDIUM CVSS 4.0
CVE-2026-7473
Arista Extensible Operating System Incomplete Comparison with Missing Factors Vulnerability - [Actively Exploited]
Description

On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is present, the switch will incorrectly decapsulate and forward other unexpected tunneled packet with a destination IP matching its configured decapsulation IP. This occurs because the switch does not verify the tunnel protocol type, potentially leading to the unexpected processing of non-configured tunnel traffic. This issue has been reported as being exploited in the wild.

INFO

Published Date :

June 5, 2026, 5:17 p.m.

Last Modified :

June 9, 2026, 8:48 p.m.

Remotely Exploit :

Yes !
CISA Notification
CISA KEV (Known Exploited Vulnerabilities)

For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild.

Description :

Arista Extensible Operating System (EOS) contains an incomplete comparison with missing factors vulnerability when the switch incorrectly decapsulate and forwards other unexpected tunneled packet with a destination IP matching its configured decapsulation IP.

Required Action :

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Known Ransomware Campaign Use:

Unknown

Notes :

https://www.arista.com/en/support/advisories-notices/security-advisory/24005-security-advisory-0137 ; https://nvd.nist.gov/vuln/detail/CVE-2026-7473

Affected Products

The following products are affected by CVE-2026-7473 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Arista eos
2 Arista 7280cr2k-60
3 Arista 7280cr3-32d4
4 Arista 7280cr3-32p4
5 Arista 7280cr3-96
6 Arista 7280dr3-24
7 Arista 7280pr3-24
8 Arista 7280sr3-48yc8
9 Arista 7500r3-24d
10 Arista 7500r3-24p
11 Arista 7500r3-36cq
12 Arista 7500r3k-36cq
13 Arista 7504r3
14 Arista 7508r3
15 Arista 7512r3
16 Arista 7800r3-48cq
17 Arista 7800r3k-48cq
18 Arista 7804r3
19 Arista 7808r3
20 Arista 7020sr-24c2
21 Arista 7020sr-32c2
22 Arista 7020tr-48
23 Arista 7020tra-48
24 Arista 7812r3
25 Arista 7816r3
26 Arista 7280cr3-36s
27 Arista 7280cr3a-24d12
28 Arista 7280cr3a-48d6
29 Arista 7280cr3a-72
30 Arista 7280dr3a-36
31 Arista 7280dr3a-54
32 Arista 7280dr3ak-36
33 Arista 7280dr3ak-54
34 Arista 7280dr3am-36
35 Arista 7280dr3am-54
36 Arista 7280sr3-40yc6
37 Arista 7280tr3-40c6
38 Arista 7500r3k-48y4d
39 Arista 7800r3-36d
40 Arista 7800r3a-36d
41 Arista 7800r3a-36dm
42 Arista 7800r3a-36p
43 Arista 7800r3a-36pm
44 Arista 7800r3ak-36dm
45 Arista 7800r3ak-36pm
46 Arista 7800r3k-48cqms
47 Arista 7289r3a-sc
48 Arista 7289r3ak-sc
49 Arista 7289r3am-sc
50 Arista 7020srg-24c2
51 Arista 7280cr-48
52 Arista 7280cr2-60
53 Arista 7280cr2a-30
54 Arista 7280cr2a-60
55 Arista 7280cr2k-30
56 Arista 7280cr2m-30
57 Arista 7280cr3ak-24d12
58 Arista 7280cr3ak-48d6
59 Arista 7280cr3ak-72
60 Arista 7280cr3am-24d12
61 Arista 7280cr3am-48d6
62 Arista 7280cr3am-72
63 Arista 7280cr3mk-32d4s
64 Arista 7280cr3mk-32p4s
65 Arista 7280qr-c36
66 Arista 7280qr-c36-m
67 Arista 7280qr-c72
68 Arista 7280qra-c36s
69 Arista 7280qra-c36sm
70 Arista 7280sr-48c6
71 Arista 7280sr2-48yc6
72 Arista 7280sr2-48yc6-m
73 Arista 7280sr2a-48yc6
74 Arista 7280sr2a-48yc6-m
75 Arista 7280sr2k-48c6-m
76 Arista 7280sr3m-48yc8
77 Arista 7280sra-48c6
78 Arista 7280sra-48c6-m
79 Arista 7280sram-48c6
80 Arista 7280srm-40cx2
81 Arista 7280tr-48c6
82 Arista 7280tra-48c6
83 Arista 7280tra-48c6-m
84 Arista 7500r-36cq-lc
85 Arista 7500r-36q-lc
86 Arista 7500r-48s2cq-lc
87 Arista 7500r-8cfpx-lc
88 Arista 7500r2-36cq-lc
89 Arista 7500r2a-36cq-lc
90 Arista 7500r2ak-36cq-lc
91 Arista 7500r2ak-48ycq-lc
92 Arista 7500r2am-36cq-lc
93 Arista 7500r2m-36cq-lc
94 Arista 7500rm-36cq-lc
95 Arista 7504r-fm
96 Arista 7508r-fm
97 Arista 7512r-fm
98 Arista 7516-sup2
99 Arista 7516n-ch
100 Arista 7516r-fm
101 Arista 7800r3k-72y
102 Arista 7816lr3
1 Arista_networks eos
CVSS Scores
The Common Vulnerability Scoring System is a standardized framework for assessing the severity of vulnerabilities in software and systems. We collect and displays CVSS scores from various sources for each CVE.
Score Version Severity Vector Exploitability Score Impact Score Source
CVSS 3.1 MEDIUM c8b34d1a-69ae-45c3-88fe-f3b3d44f39b7
CVSS 3.1 MEDIUM [email protected]
CVSS 4.0 MEDIUM c8b34d1a-69ae-45c3-88fe-f3b3d44f39b7
CVSS 4.0 MEDIUM [email protected]
Solution
Update Arista EOS to a fixed version to properly validate tunnel protocol types.
  • Update Arista EOS to a fixed version.
  • Verify tunnel configuration and protocols.
  • Monitor network traffic for unexpected tunnels.
References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2026-7473.

URL Resource
https://www.arista.com/en/support/advisories-notices/security-advisory/22872-security-advisory-0137 Broken Link
https://www.arista.com/en/support/advisories-notices/security-advisory/24005-security-advisory-0137 Vendor Advisory Mitigation
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-7473 US Government Resource
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2026-7473 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2026-7473 weaknesses.

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2026-7473 vulnerability anywhere in the article.

  • TheCyberThrone
CISA KEV Update — Cisco Catalyst SD-WAN, Google Chrome V8 & Arista EOS

CISA added three new vulnerabilities to its Known Exploited Vulnerabilities catalog on June 9, 2026: CVE-2026-20245 (Cisco Catalyst SD-WAN Manager), CVE-2026-11645 (Google Chromium V8), and CVE-2026-7 ... Read more

Published Date: Jun 10, 2026 (2 weeks, 1 day ago)
  • The Hacker News
CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitati ... Read more

Published Date: Jun 10, 2026 (2 weeks, 1 day ago)

The following table lists the changes that have been made to the CVE-2026-7473 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • Initial Analysis by [email protected]

    Jun. 09, 2026

    Action Type Old Value New Value
    Added CPE Configuration AND OR *cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:* OR cpe:2.3:h:arista:7512r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7508r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7504r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7808r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7804r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3-48cq:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3k-48cq:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r3-24p:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r3-24d:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r3-36cq:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r3k-36cq:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280pr3-24:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3-24:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3-32p4:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3-32d4:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr2k-60:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3-96:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr3-48yc8:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7020sr-24c2:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7020tr-48:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7020tra-48:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7020sr-32c2:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7816r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7812r3:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3-36d:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3a-36p:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3a-36pm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3ak-36pm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3a-36d:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3a-36dm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3ak-36dm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3k-48cqms:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r3k-48y4d:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7289r3a-sc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7289r3am-sc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7289r3ak-sc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3a-54:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3am-54:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3ak-54:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3am-36:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3ak-36:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280dr3a-36:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3a-24d12:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3a-48d6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3-36s:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3a-72:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr3-40yc6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280tr3-40c6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7020srg-24c2:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr-48:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr2-60:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr2a-30:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr2a-60:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr2k-30:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr2m-30:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280qr-c36:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280qr-c36-m:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280qr-c72:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280qra-c36s:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280qra-c36sm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr-48c6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr2-48yc6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr2-48yc6-m:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr2a-48yc6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr2a-48yc6-m:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr2k-48c6-m:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sra-48c6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sra-48c6-m:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sram-48c6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280srm-40cx2:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280tr-48c6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280tra-48c6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280tra-48c6-m:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r-36q-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r-48s2cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r-8cfpx-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r2-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r2a-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r2ak-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r2ak-48ycq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r2am-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500r2m-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7500rm-36cq-lc:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7504r-fm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7508r-fm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7512r-fm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7516-sup2:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7516n-ch:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7516r-fm:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3ak-24d12:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3ak-48d6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3am-24d12:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3am-48d6:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3mk-32d4s:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3mk-32p4s:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3ak-72:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280cr3am-72:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7280sr3m-48yc8:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7800r3k-72y:-:*:*:*:*:*:*:* cpe:2.3:h:arista:7816lr3:-:*:*:*:*:*:*:*
    Added Reference Type Arista Networks, Inc.: https://www.arista.com/en/support/advisories-notices/security-advisory/22872-security-advisory-0137 Types: Broken Link
    Added Reference Type CISA-ADP: https://www.arista.com/en/support/advisories-notices/security-advisory/24005-security-advisory-0137 Types: Mitigation, Vendor Advisory
    Added Reference Type CISA-ADP: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-7473 Types: US Government Resource
  • CVE CISA KEV Update by 9119a7d8-5eab-497f-8521-727c672e3725

    Jun. 09, 2026

    Action Type Old Value New Value
    Added Date Added 2026-06-09
    Added Due Date 2026-06-09
    Added Required Action 2026-06-09
    Added Vulnerability Name 2026-06-09
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Jun. 09, 2026

    Action Type Old Value New Value
    Added Reference https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-7473
  • CVE Modified by 134c704f-9b21-4f2e-91b3-4a467353bcc0

    Jun. 08, 2026

    Action Type Old Value New Value
    Added Reference https://www.arista.com/en/support/advisories-notices/security-advisory/24005-security-advisory-0137
  • New CVE Received by [email protected]

    Jun. 05, 2026

    Action Type Old Value New Value
    Added Description On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is present, the switch will incorrectly decapsulate and forward other unexpected tunneled packet with a destination IP matching its configured decapsulation IP. This occurs because the switch does not verify the tunnel protocol type, potentially leading to the unexpected processing of non-configured tunnel traffic. This issue has been reported as being exploited in the wild.
    Added CVSS V4.0 AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N
    Added CWE CWE-1023
    Added Reference https://www.arista.com/en/support/advisories-notices/security-advisory/22872-security-advisory-0137
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.