Hewlett Packard Enterprise AOS-CX
34 known vulnerabilities in Hewlett Packard Enterprise AOS-CX, 2 critical, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-73783 CVSS 4.9 medium Stack overflow vulnerabilities exist in an API endpoint of AOS-CX. Successful exploitation could allow an authenticated malicious actor to…
- CVE-2026-73782 CVSS 8.8 high A format string vulnerability exists in the command line interface of AOS-CX that could lead to unauthenticated remote code execution…
- CVE-2026-73781 CVSS 8.4 high A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a stored…
- CVE-2026-73780 CVSS 8.3 high A vulnerability in the web-based management interface of AOS-CX switches exposes some sessions to a lack of Cross-Site Request Forgery…
- CVE-2026-73779 CVSS 8.2 high Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote…
- CVE-2026-73778 CVSS 9.8 critical A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated…
- CVE-2026-73777 CVSS 8.1 high Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor…
- CVE-2026-73776 CVSS 7.9 high A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could allow an…
- CVE-2026-73775 CVSS 7.7 high Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges to access sensitive…
- CVE-2026-73774 CVSS 7.6 high A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated disclosure of…
- CVE-2026-73773 CVSS 7.5 high An unauthenticated Denial-of-Service (DoS) vulnerability exists in the API endpoint of AOS-CX. Successful exploitation of this…
- CVE-2026-73772 CVSS 6.5 medium Buffer overflow vulnerabilities exist in an underlying service of AOS-CX that could lead to an unauthenticated denial-of-service condition…
- CVE-2026-73771 CVSS 7.5 high An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper authentication processing. An…
- CVE-2026-73770 CVSS 7.3 high An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious…
- CVE-2026-73768 CVSS 7.3 high A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malformed input. Successful…
- CVE-2026-73767 CVSS 7.2 high Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of these…
- CVE-2026-73766 CVSS 7.2 high Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker with administrative…
- CVE-2026-73765 CVSS 7.2 high Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of these vulnerabilities allows an…
- CVE-2026-73764 CVSS 7.1 high Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote…
- CVE-2026-73763 CVSS 8.8 high A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands…
- CVE-2026-73762 CVSS 6.6 medium A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls…
- CVE-2026-73761 CVSS 6.5 medium An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information…
- CVE-2026-73760 CVSS 6.5 medium An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read…
- CVE-2026-73759 CVSS 6.5 medium Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending…
- CVE-2026-73758 CVSS 6.5 medium A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low…
- CVE-2026-73757 CVSS 6.4 medium A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side…
- CVE-2026-73756 CVSS 5.9 medium A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a…
- CVE-2026-73755 CVSS 5.7 medium A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated…
- CVE-2026-73754 CVSS 5.3 medium Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user…
- CVE-2026-73753 CVSS 8.8 high Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a…