CVE-2026-73762
- EPSS 0.22%
- Veröffentlicht 01.09.2026 20:28:20
- Zuletzt bearbeitet 04.09.2026 15:00:14
A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases this could enable unauthorized access to management functionality that should be restricted by the...
CVE-2026-73761
- EPSS 0.2%
- Veröffentlicht 01.09.2026 20:28:19
- Zuletzt bearbeitet 04.09.2026 15:00:09
An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially crafted packet. Successful exploitation of this vulnerability results in the abil...
CVE-2026-73760
- EPSS 0.43%
- Veröffentlicht 01.09.2026 20:28:18
- Zuletzt bearbeitet 04.09.2026 15:00:04
An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read arbitrary files from the web-based management interface of the underlying operating system, which could lead to r...
CVE-2026-73759
- EPSS 0.2%
- Veröffentlicht 01.09.2026 20:28:16
- Zuletzt bearbeitet 22.09.2026 20:51:40
Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending specially crafted packets. Successful exploitation of these vulnerabilities results in disruption of normal operation ...
CVE-2026-73758
- EPSS 0.23%
- Veröffentlicht 01.09.2026 20:28:14
- Zuletzt bearbeitet 04.09.2026 14:59:52
A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low privilege operator user to change the state of certain settings of a vulnerable system.
CVE-2026-73757
- EPSS 0.29%
- Veröffentlicht 01.09.2026 20:28:12
- Zuletzt bearbeitet 04.09.2026 14:59:47
A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A successful exploit allows an attacker to enumerate information about the internal s...
CVE-2026-73756
- EPSS 0.21%
- Veröffentlicht 01.09.2026 20:28:11
- Zuletzt bearbeitet 04.09.2026 14:59:41
A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a man-in-the-middle attack. Successful exploitation allows an attacker to retrieve data which could be used to further comp...
CVE-2026-73755
- EPSS 0.23%
- Veröffentlicht 01.09.2026 20:28:10
- Zuletzt bearbeitet 04.09.2026 14:59:35
A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low-privilege operator user, after a required user action, to access sensitive information from the vulnerable system.
CVE-2026-73754
- EPSS 0.26%
- Veröffentlicht 01.09.2026 20:28:08
- Zuletzt bearbeitet 04.09.2026 14:59:28
Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user to disrupt the normal operation of a vulnerable system.
CVE-2026-73753
- EPSS 0.37%
- Veröffentlicht 01.09.2026 20:28:07
- Zuletzt bearbeitet 22.09.2026 20:52:29
Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a privileged user on the underlying operating system.