Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls.
Metrics
Affected Vendors & Products
References
History
Wed, 02 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hewlett Packard Enterprise (hpe)
Hewlett Packard Enterprise (hpe) aos-cx |
|
| Vendors & Products |
Hewlett Packard Enterprise (hpe)
Hewlett Packard Enterprise (hpe) aos-cx |
Wed, 02 Sep 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 CWE-285 |
Wed, 02 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-287 | |
| Metrics |
ssvc
|
Wed, 02 Sep 2026 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-284 CWE-285 |
Tue, 01 Sep 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. | |
| Title | Authorization Bypass Vulnerabilities Leading to Privilege Escalation in AOS-CX API Endpoint | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published: 2026-09-01T20:28:51.978Z
Updated: 2026-09-03T03:55:54.637Z
Reserved: 2026-08-13T16:39:09.490Z
Link: CVE-2026-73777
Updated: 2026-09-02T12:37:26.172Z
Status : Awaiting Analysis
Published: 2026-09-01T21:18:44.520
Modified: 2026-09-03T13:06:06.537
Link: CVE-2026-73777
No data.