Hpe

Arubaos-cx

57 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.26%
  • Veröffentlicht 01.09.2026 20:29:01
  • Zuletzt bearbeitet 05.10.2026 18:42:19

Stack overflow vulnerabilities exist in an API endpoint of AOS-CX. Successful exploitation could allow an authenticated malicious actor to cause a denial-of-service condition on the affected system.

Medienbericht
  • EPSS 0.27%
  • Veröffentlicht 01.09.2026 20:28:59
  • Zuletzt bearbeitet 04.09.2026 14:52:46

A format string vulnerability exists in the command line interface of AOS-CX that could lead to unauthenticated remote code execution. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user...

Medienbericht
  • EPSS 0.28%
  • Veröffentlicht 01.09.2026 20:28:58
  • Zuletzt bearbeitet 04.09.2026 14:52:41

A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacke...

Medienbericht
  • EPSS 0.13%
  • Veröffentlicht 01.09.2026 20:28:56
  • Zuletzt bearbeitet 22.09.2026 20:50:12

A vulnerability in the web-based management interface of AOS-CX switches exposes some sessions to a lack of Cross-Site Request Forgery (CSRF) protection. This could allow a remote unauthenticated attacker to execute arbitrary input against the affect...

Medienbericht
  • EPSS 0.17%
  • Veröffentlicht 01.09.2026 20:28:55
  • Zuletzt bearbeitet 04.09.2026 14:53:25

Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could compromise system integrity and...

Medienbericht
  • EPSS 0.27%
  • Veröffentlicht 01.09.2026 20:28:53
  • Zuletzt bearbeitet 10.09.2026 16:19:12

A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a device in its factory-default or post-ZTP state before any admi...

Medienbericht
  • EPSS 0.27%
  • Veröffentlicht 01.09.2026 20:28:51
  • Zuletzt bearbeitet 04.09.2026 14:53:31

Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls.

  • EPSS 0.13%
  • Veröffentlicht 01.09.2026 20:28:50
  • Zuletzt bearbeitet 04.09.2026 14:53:44

A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could allow an authenticated malicious actor with administrative privileges to execute arbitrary code on the underlying operating sy...

  • EPSS 0.27%
  • Veröffentlicht 01.09.2026 20:28:44
  • Zuletzt bearbeitet 04.09.2026 14:53:49

Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit allows an attacker to retrieve information which could be used to potentially gain fur...

  • EPSS 0.19%
  • Veröffentlicht 01.09.2026 20:28:42
  • Zuletzt bearbeitet 04.09.2026 14:53:54

A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated disclosure of sensitive information by sending specially crafted packets to the affected system. Successful exploitation of this vu...