CVE-2026-73783
- EPSS 0.26%
- Veröffentlicht 01.09.2026 20:29:01
- Zuletzt bearbeitet 05.10.2026 18:42:19
Stack overflow vulnerabilities exist in an API endpoint of AOS-CX. Successful exploitation could allow an authenticated malicious actor to cause a denial-of-service condition on the affected system.
CVE-2026-73782
- EPSS 0.27%
- Veröffentlicht 01.09.2026 20:28:59
- Zuletzt bearbeitet 04.09.2026 14:52:46
A format string vulnerability exists in the command line interface of AOS-CX that could lead to unauthenticated remote code execution. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user...
CVE-2026-73781
- EPSS 0.28%
- Veröffentlicht 01.09.2026 20:28:58
- Zuletzt bearbeitet 04.09.2026 14:52:41
A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacke...
CVE-2026-73780
- EPSS 0.13%
- Veröffentlicht 01.09.2026 20:28:56
- Zuletzt bearbeitet 22.09.2026 20:50:12
A vulnerability in the web-based management interface of AOS-CX switches exposes some sessions to a lack of Cross-Site Request Forgery (CSRF) protection. This could allow a remote unauthenticated attacker to execute arbitrary input against the affect...
CVE-2026-73779
- EPSS 0.17%
- Veröffentlicht 01.09.2026 20:28:55
- Zuletzt bearbeitet 04.09.2026 14:53:25
Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could compromise system integrity and...
CVE-2026-73778
- EPSS 0.27%
- Veröffentlicht 01.09.2026 20:28:53
- Zuletzt bearbeitet 10.09.2026 16:19:12
A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a device in its factory-default or post-ZTP state before any admi...
CVE-2026-73777
- EPSS 0.27%
- Veröffentlicht 01.09.2026 20:28:51
- Zuletzt bearbeitet 04.09.2026 14:53:31
Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls.
CVE-2026-73776
- EPSS 0.13%
- Veröffentlicht 01.09.2026 20:28:50
- Zuletzt bearbeitet 04.09.2026 14:53:44
A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could allow an authenticated malicious actor with administrative privileges to execute arbitrary code on the underlying operating sy...
CVE-2026-73775
- EPSS 0.27%
- Veröffentlicht 01.09.2026 20:28:44
- Zuletzt bearbeitet 04.09.2026 14:53:49
Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit allows an attacker to retrieve information which could be used to potentially gain fur...
CVE-2026-73774
- EPSS 0.19%
- Veröffentlicht 01.09.2026 20:28:42
- Zuletzt bearbeitet 04.09.2026 14:53:54
A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated disclosure of sensitive information by sending specially crafted packets to the affected system. Successful exploitation of this vu...