HPE Hewlett Packard Enterprise AOS-CX是美国HPE公司的一款网络操作系统。 HPE Hewlett Packard Enterprise AOS-CX 10.17.0000版本及之前版本、10.16.0000版本及之前版本、10.13.0000版本及之前版本和10.18.0000版本之前版本存在安全漏洞,该漏洞源于路径遍历,可能导致经过身份验证的攻击者从底层操作系统命令行界面复制任意文件到用户可读位置,从而导致远程代码执行。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-CX | 10.17.0000≤ 10.17.1020 |
affected |
10.16.0000≤ 10.16.1050 |
affected | ||
10.13.0000≤ 10.13.1180 |
affected | ||
10.18.0000< 10.18.0001 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-CX | 10.17.0000 ~ 10.17.1020 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-44880 | 8.8 HIGH | Low-Privilege Authenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution |
| CVE-2026-63453 | 7.2 HIGH | Authenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CX |
| CVE-2026-44879 | 7.2 HIGH | Authenticated Command Injection allows arbitrary command execution in CLI Interface |
| CVE-2026-44878 | 7.2 HIGH | Authenticated Path Traversal allows Unauthorized Access in Web Interface |
No comments yet