CVE-2026-73752
An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution.
- Published Sep 1, 2026
- CVSS 8.8 high
- 0.5% chance of exploitation in the next 30 days (EPSS)