Hewlett Packard Enterprise AOS-CX是美国Hewlett Packard Enterprise公司的一款网络交换机操作系统。 Hewlett Packard Enterprise AOS-CX 10.18.0000版本至10.18.0001版本、10.17.0000版本至10.17.1021版本、10.16.0000版本至10.16.1051版本、10.13.0000版本至10.13.1180版本和10.10.0000版本至10.10.1180版本存在安全漏洞,该漏洞源于守护
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-CX | 10.18.0000≤ 10.18.0001 |
affected |
10.17.0000≤ 10.17.1021 |
affected | ||
10.16.0000≤ 10.16.1051 |
affected | ||
10.13.0000≤ 10.13.1180 |
affected | ||
10.10.0000≤ 10.10.1180 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-CX | 10.18.0000 ~ 10.18.0001 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76657 | 10.0 CRITICAL | Authentication Bypass in HPE Networking Fabric Composer API allows Administrative Access |
| CVE-2026-76658 | 10.0 CRITICAL | Unauthenticated Remote Code Execution in HPE Networking Fabric Composer SSH Daemon |
| CVE-2026-19766 | 9.6 CRITICAL | Authentication Bypass leads to Administrative control of adjacent network hosts in HPE Net |
| CVE-2026-73700 | 9.0 CRITICAL | Authenticated Stored Cross-Site Scripting Vulnerability (XSS) in HPE Networking Fabric Com |
| CVE-2026-73701 | 9.0 CRITICAL | Unauthenticated Remote Code Execution in HPE Networking Fabric Composer |
| CVE-2026-73750 | 8.8 HIGH | Authenticated Buffer Overflow Vulnerabilities in AOS-CX API Endpoint Leads to Possible Cod |
| CVE-2026-73753 | 8.8 HIGH | Authenticated Remote Command Injection Vulnerabilities in AOS-CX Command Line Interface |
| CVE-2026-73752 | 8.8 HIGH | Unauthenticated Arbitrary File Write Vulnerability Leads to Remote Code Execution in AOS-C |
| CVE-2026-73751 | 8.8 HIGH | Authenticated Remote Command Injection in AOS-CX Web-based Management Interface |
| CVE-2026-73782 | 8.8 HIGH | Unauthenticated Format String Vulnerability leads to Remote Code Execution in AOS-CX |
| CVE-2026-73705 | 8.8 HIGH | Authenticated Arbitrary File Write leads to Remote Code Execution in HPE Networking Fabric |
| CVE-2026-73704 | 8.8 HIGH | Authenticated Command Injection Leading to Administrative Access in HPE Networking Fabric |
| CVE-2026-73703 | 8.8 HIGH | Unauthenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Networking Fabric C |
| CVE-2026-73702 | 8.8 HIGH | Authenticated Privilege Escalation Vulnerability in the API of HPE Networking Fabric Compo |
| CVE-2026-73706 | 8.6 HIGH | Authentication Bypass in the API of HPE Networking Fabric Composer allows Data Exposure an |
| CVE-2026-73707 | 8.5 HIGH | Authenticated Privilege Escalation via Broken Access Control in HPE Networking Fabric Comp |
| CVE-2026-73781 | 8.4 HIGH | Authenticated Stored Cross-Site Scripting Vulnerability (XSS) in AOS-CX Web-Based Manageme |
| CVE-2026-73708 | 8.3 HIGH | Fault in Business Logic allows Authenticated Sensitive Information Disclosure in HPE Netwo |
| CVE-2026-73709 | 8.3 HIGH | Unauthenticated Remote Code Execution during HPE Networking Fabric Composer Installation P |
| CVE-2026-73780 | 8.3 HIGH | Lack of Cross-Site Request Forgery (CSRF) Protections for Certificate-Authenticated Sessio |
Showing top 20 of 86 CVEs. View all on vendor page → →
No comments yet