Hpe

Arubaos-cx

57 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.22%
  • Veröffentlicht 01.09.2026 20:28:20
  • Zuletzt bearbeitet 04.09.2026 15:00:14

A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases this could enable unauthorized access to management functionality that should be restricted by the...

  • EPSS 0.2%
  • Veröffentlicht 01.09.2026 20:28:19
  • Zuletzt bearbeitet 04.09.2026 15:00:09

An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially crafted packet. Successful exploitation of this vulnerability results in the abil...

  • EPSS 0.43%
  • Veröffentlicht 01.09.2026 20:28:18
  • Zuletzt bearbeitet 04.09.2026 15:00:04

An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read arbitrary files from the web-based management interface of the underlying operating system, which could lead to r...

  • EPSS 0.2%
  • Veröffentlicht 01.09.2026 20:28:16
  • Zuletzt bearbeitet 22.09.2026 20:51:40

Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending specially crafted packets. Successful exploitation of these vulnerabilities results in disruption of normal operation ...

  • EPSS 0.23%
  • Veröffentlicht 01.09.2026 20:28:14
  • Zuletzt bearbeitet 04.09.2026 14:59:52

A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low privilege operator user to change the state of certain settings of a vulnerable system.

  • EPSS 0.29%
  • Veröffentlicht 01.09.2026 20:28:12
  • Zuletzt bearbeitet 04.09.2026 14:59:47

A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A successful exploit allows an attacker to enumerate information about the internal s...

  • EPSS 0.21%
  • Veröffentlicht 01.09.2026 20:28:11
  • Zuletzt bearbeitet 04.09.2026 14:59:41

A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a man-in-the-middle attack. Successful exploitation allows an attacker to retrieve data which could be used to further comp...

  • EPSS 0.23%
  • Veröffentlicht 01.09.2026 20:28:10
  • Zuletzt bearbeitet 04.09.2026 14:59:35

A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low-privilege operator user, after a required user action, to access sensitive information from the vulnerable system.

  • EPSS 0.26%
  • Veröffentlicht 01.09.2026 20:28:08
  • Zuletzt bearbeitet 04.09.2026 14:59:28

Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user to disrupt the normal operation of a vulnerable system.

Medienbericht
  • EPSS 0.37%
  • Veröffentlicht 01.09.2026 20:28:07
  • Zuletzt bearbeitet 22.09.2026 20:52:29

Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a privileged user on the underlying operating system.