An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 02 Sep 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 CWE-284 |
Tue, 01 Sep 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution. | |
| Title | Unauthenticated Arbitrary File Write Vulnerability Leads to Remote Code Execution in AOS-CX | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2026-09-01T20:28:06.069Z
Reserved: 2026-08-13T16:38:28.876Z
Link: CVE-2026-73752
No data.
Status : Received
Published: 2026-09-01T21:18:41.757
Modified: 2026-09-01T21:18:41.757
Link: CVE-2026-73752
No data.
OpenCVE Enrichment
Updated: 2026-09-02T02:00:13Z