Hewlett Packard Enterprise AOS-CX是美国Hewlett Packard Enterprise公司的一款网络交换机操作系统。 Hewlett Packard Enterprise AOS-CX 10.18.0000版本至10.18.0001版本、10.17.0000版本至10.17.1021版本、10.16.0000版本至10.16.1051版本、10.13.0000版本至10.13.1180版本和10.10.0000版本至10.10.1180版本存在安全漏洞,该漏洞源于命令
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-CX | 10.18.0000≤ 10.18.0001 |
affected |
10.17.0000≤ 10.17.1021 |
affected | ||
10.16.0000≤ 10.16.1051 |
affected | ||
10.13.0000≤ 10.13.1180 |
affected | ||
10.10.0000≤ 10.10.1180 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | AOS-CX | 10.18.0000 ~ 10.18.0001 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76658 | 10.0 CRITICAL | Unauthenticated Remote Code Execution in HPE Networking Fabric Composer SSH Daemon |
| CVE-2026-76657 | 10.0 CRITICAL | Authentication Bypass in HPE Networking Fabric Composer API allows Administrative Access |
| CVE-2026-73749 | 9.8 CRITICAL | Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CX |
| CVE-2026-19766 | 9.6 CRITICAL | Authentication Bypass leads to Administrative control of adjacent network hosts in HPE Net |
| CVE-2026-73701 | 9.0 CRITICAL | Unauthenticated Remote Code Execution in HPE Networking Fabric Composer |
| CVE-2026-73700 | 9.0 CRITICAL | Authenticated Stored Cross-Site Scripting Vulnerability (XSS) in HPE Networking Fabric Com |
| CVE-2026-73702 | 8.8 HIGH | Authenticated Privilege Escalation Vulnerability in the API of HPE Networking Fabric Compo |
| CVE-2026-73703 | 8.8 HIGH | Unauthenticated Stored Cross-Site Scripting (XSS) Vulnerability in HPE Networking Fabric C |
| CVE-2026-73704 | 8.8 HIGH | Authenticated Command Injection Leading to Administrative Access in HPE Networking Fabric |
| CVE-2026-73705 | 8.8 HIGH | Authenticated Arbitrary File Write leads to Remote Code Execution in HPE Networking Fabric |
| CVE-2026-73750 | 8.8 HIGH | Authenticated Buffer Overflow Vulnerabilities in AOS-CX API Endpoint Leads to Possible Cod |
| CVE-2026-73751 | 8.8 HIGH | Authenticated Remote Command Injection in AOS-CX Web-based Management Interface |
| CVE-2026-73752 | 8.8 HIGH | Unauthenticated Arbitrary File Write Vulnerability Leads to Remote Code Execution in AOS-C |
| CVE-2026-73753 | 8.8 HIGH | Authenticated Remote Command Injection Vulnerabilities in AOS-CX Command Line Interface |
| CVE-2026-73706 | 8.6 HIGH | Authentication Bypass in the API of HPE Networking Fabric Composer allows Data Exposure an |
| CVE-2026-73707 | 8.5 HIGH | Authenticated Privilege Escalation via Broken Access Control in HPE Networking Fabric Comp |
| CVE-2026-73781 | 8.4 HIGH | Authenticated Stored Cross-Site Scripting Vulnerability (XSS) in AOS-CX Web-Based Manageme |
| CVE-2026-73780 | 8.3 HIGH | Lack of Cross-Site Request Forgery (CSRF) Protections for Certificate-Authenticated Sessio |
| CVE-2026-73708 | 8.3 HIGH | Fault in Business Logic allows Authenticated Sensitive Information Disclosure in HPE Netwo |
| CVE-2026-73709 | 8.3 HIGH | Unauthenticated Remote Code Execution during HPE Networking Fabric Composer Installation P |
Showing top 20 of 86 CVEs. View all on vendor page → →
No comments yet