top of page
perceptive_background_267k.jpg

Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. An unauthenticated remote attacker could exploit…

Published:

1 September 2026 at 00:00:00

Alert date:

2 September 2026 at 00:16:07

Source:

nvd.nist.gov

Click to open the original link from this advisory

Network Infrastructure, Zero-Day Vulnerabilities

Multiple vulnerabilities have been identified in a daemon component of HPE's AOS-CX network operating system. The flaws stem from improper processing of malformed input, allowing unauthenticated remote attackers to exploit them by sending specially crafted packets. Successful exploitation can result in remote code execution with elevated privileges. No authentication is required, making this particularly dangerous for exposed network devices. The vulnerabilities affect HPE AOS-CX, which runs on Aruba/HPE switching hardware. An official advisory has been published by HPE via their support portal. Organizations running AOS-CX should apply patches or mitigations as soon as they become available. The severity is high due to the unauthenticated RCE potential with privilege escalation.

Technical details

Mitigation steps:

Affected products:

HPE AOS-CX

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page