Back

HIGH

Unauthenticated Arbitrary File Write Vulnerability Leads to Remote Code Execution in AOS-CX

Published Sep 1, 2026

Description

An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner hpe
Published Sep 1, 2026
Updated Sep 3, 2026
Reserved Aug 13, 2026
CISA Vulnrichment
Updated Sep 2, 2026
NVD
Status Analyzed
Modified Sep 4, 2026
Red Hat
Severity n/a
Public date n/a