{
  "document": {
    "aggregate_severity": {
      "namespace": "https://www.first.org/cvss/v3.1/specification-document#Qualitative-Severity-Rating-Scale",
      "text": "Critical"
    },
    "category": "csaf_security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en-US",
    "notes": [
      {
        "category": "summary",
        "text": "HPE Networking has released updates for AOS-CX that address multiple vulnerabilities described in this advisory.",
        "title": "Summary"
      },
      {
        "category": "general",
        "text": "These vulnerabilities affect the following HPE Networking AOS-CX versions unless specifically noted otherwise in the details section: \n    - AOS-CX 10.18.0001 and below\n    - AOS-CX 10.17.1021 and below\n    - AOS-CX 10.16.1051 and below \n    - AOS-CX 10.13.1180 and below \n    - AOS-CX 10.10.1180 and below \n\nNOTE: Product software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not covered by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
        "title": "Affected Products"
      },
      {
        "category": "general",
        "text": "Any other HPE Networking products not specifically listed above are not affected by these vulnerabilities.",
        "title": "Unaffected Products"
      },
      {
        "category": "other",
        "text": "These vulnerabilities were generally discovered by internal security research at HPE Networking. HPE Networking is not aware of any public discussion or exploit code that targets the listed vulnerabilities as of the release date of this advisory. Customers are strongly urged to patch their instances due to the complexity, breadth, and impact of these vulnerabilities.",
        "title": "Exploitation and Public Discussion"
      },
      {
        "category": "general",
        "text": "Complete information on reporting security vulnerabilities in HPE Networking products and obtaining assistance with security incidents is available at:\nhttps://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=a00100637en_us\n \nFor reporting *NEW* HPE Networking security issues, email can be sent to networking-sirt(at)hpe.com. For sensitive information we encourage the use of PGP encryption. Our public keys can be found at:\nhttps://www.hpe.com/info/psrt-pgp-key",
        "title": "HPE Networking SIRT Security Procedures"
      },
      {
        "category": "legal_disclaimer",
        "text": "(c) Copyright 2026 by Hewlett Packard Enterprise Development LP. This advisory may be redistributed freely after the release date given at the top of the text, provided that the redistributed copies are complete and unmodified, including all data and version information.",
        "title": "Legal Disclaimer"
      }
    ],
    "publisher": {
      "category": "vendor",
      "contact_details": "Email: aruba-sirt(at)hpe.com - For further details please see http://www.hpe.com/support/security-response-policy",
      "issuing_authority": "HPE Networking's Security Incident Response Team (SIRT) is responsible for receiving, tracking, managing, and disclosing vulnerabilities in HPE Aruba Networking products. The HPE Aruba Networking SIRT actively works with industry, non-profit, government organizations, and the security community when vulnerabilities are reported. A security vulnerability is defined as any weakness in a product that allows an attacker to compromise the confidentiality, integrity, or availability of a product, customer infrastructure, or IT system through an HPE Aruba Networking product in that environment.",
      "name": "HPE Networking",
      "namespace": "https://www.hpe.com/support/security-response-policy"
    },
    "references": [
      {
        "summary": "Original Advisory",
        "url": "https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05134en_us&docLocale=en_US"
      },
      {
        "summary": "HPE Networking Security Advisory Archive",
        "url": "https://csaf.arubanetworking.hpe.com/"
      },
      {
        "summary": "HPE Networking Product Security Incident Response Policy",
        "url": "https://support.hpe.com/hpesc/public/docDisplay?docLocale=en_US&docId=a00100637en_us"
      }
    ],
    "title": "Multiple Vulnerabilities in HPE Networking AOS-CX",
    "tracking": {
      "current_release_date": "2026-09-01T16:00:00.000Z",
      "generator": {
        "date": "2026-08-28T16:20:05.566Z",
        "engine": {
          "name": "Secvisogram",
          "version": "2.6.11"
        }
      },
      "id": "HPESBNW05134",
      "initial_release_date": "2026-09-01T16:00:00.000Z",
      "revision_history": [
        {
          "date": "2026-09-01T16:00:00.000Z",
          "number": "1",
          "summary": "Initial Publication"
        }
      ],
      "status": "draft",
      "version": "1"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "category": "product_version",
                "name": "AOS-CX 10.18.1002",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": "10.18.1002",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version",
                "name": "AOS-CX 10.17.1030",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": "10.17.1030",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version",
                "name": "AOS-CX 10.16.1060",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": "10.16.1060",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version",
                "name": "AOS-CX 10.13.1190",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": "10.13.1190",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version",
                "name": "AOS-CX 10.10.1181",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": "10.10.1181",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version_range",
                "name": "vers:semver/>=10.18.0000|<=10.18.0001",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": ">=10.18.0000|<=10.18.0001",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version_range",
                "name": "vers:semver/>=10.17.0000|<=10.17.1021",
                "product": {
                  "name": "HPE Networking AOS-CX",
                  "product_id": ">=10.17.0000|<=10.17.1021",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version_range",
                "name": "vers:semver/>=10.16.0000|<=10.16.1051",
                "product": {
                  "name": "HPE Aruba Networking AOS-CX",
                  "product_id": ">=10.16.0000|<=10.16.1051",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Aruba Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version_range",
                "name": "vers:semver/>=10.13.0000|<=10.13.1180",
                "product": {
                  "name": "HPE Aruba Networking AOS-CX",
                  "product_id": ">=10.13.0000|<=10.13.1180",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Aruba Networking AOS-CX Switch Series"
                    ]
                  }
                }
              },
              {
                "category": "product_version_range",
                "name": "vers:semver/>=10.10.0000|<=10.10.1180",
                "product": {
                  "name": "HPE Aruba Networking AOS-CX",
                  "product_id": ">=10.10.0000|<=10.10.1180",
                  "product_identification_helper": {
                    "model_numbers": [
                      "HPE Aruba Networking AOS-CX Switch Series"
                    ]
                  }
                }
              }
            ],
            "category": "product_name",
            "name": "AOS-CX"
          }
        ],
        "category": "vendor",
        "name": "HPE Networking"
      }
    ]
  },
  "vulnerabilities": [
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73749",
      "notes": [
        {
          "category": "details",
          "text": "Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. An unauthenticated remote attacker could exploit these vulnerabilities by sending specially crafted packets to the affected service. Successful exploitation could result in remote code execution with elevated privileges.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-291, VULN-294, VULN-293, VULN-356, VULN-781, VULN-820, VULN-957, VULN-826, VULN-295, VULN-301, VULN-353, VULN-727, VULN-737, VULN-776, VULN-822, VULN-823, VULN-824, VULN-821, VULN-784",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 9.8,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 9.8,
            "environmentalSeverity": "CRITICAL",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 9.8,
            "temporalSeverity": "CRITICAL",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73750",
      "notes": [
        {
          "category": "details",
          "text": "Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input. An authenticated remote attacker could exploit these vulnerabilities by providing specially crafted input from a compromised or hostile authentication server. Successful exploitation could result in a Denial-of-Service or potential remote code execution with elevated privileges. ",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-299, VULN-753, VULN-801, VULN-736, VULN-750, VULN-774, VULN-832, VULN-773, VULN-347, VULN-768, VULN-800",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.8,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 8.8,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Buffer Overflow Vulnerabilities in AOS-CX API Endpoint Leads to Possible Code Execution"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73751",
      "notes": [
        {
          "category": "details",
          "text": "An authenticated user with low-privileged access could submit crafted input through the web-based management interface to execute arbitrary commands on the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-762, VULN-953, VULN-817",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.8,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 8.8,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Remote Command Injection in AOS-CX Web-based Management Interface"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73752",
      "notes": [
        {
          "category": "details",
          "text": "An unauthenticated arbitrary file write vulnerability exists in an API endpoint of AOS-CX. Successful exploitation of this vulnerability allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-787, VULN-827 ",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.8,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 8.8,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Arbitrary File Write Vulnerability Leads to Remote Code Execution in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73753",
      "notes": [
        {
          "category": "details",
          "text": "Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a privileged user on the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-769, VULN-788, VULN-802, VULN-803",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.8,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 8.8,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Remote Command Injection Vulnerabilities in AOS-CX Command Line Interface"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73782",
      "notes": [
        {
          "category": "details",
          "text": "A format string vulnerability exists in the command line interface of AOS-CX that could lead to unauthenticated remote code execution. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-300",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.8,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.8,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 8.8,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Format String Vulnerability leads to Remote Code Execution in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73781",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-833",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.4,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.5,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "CHANGED",
            "temporalScore": 8.4,
            "temporalSeverity": "HIGH",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Stored Cross-Site Scripting Vulnerability (XSS) in AOS-CX Web-Based Management Interface"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73780",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability in the web-based management interface of AOS-CX switches exposes some sessions to a lack of Cross-Site Request Forgery (CSRF) protection. This could allow a remote unauthenticated attacker to execute arbitrary input against the affected interface if the attacker can convince an authenticated user of the interface to interact with a specially crafted URL.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-746",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.3,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.4,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "temporalScore": 8.3,
            "temporalSeverity": "HIGH",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Lack of Cross-Site Request Forgery (CSRF) Protections for Certificate-Authenticated Sessions in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73779",
      "notes": [
        {
          "category": "details",
          "text": "Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could compromise system integrity and further expose sensitive information. ",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-757, VULN-806, VULN-811, VULN-840",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n \nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "LOW",
            "baseScore": 8.2,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.2,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "temporalScore": 8.2,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:L",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authentication Bypass Vulnerabilities Leading to Information Disclosure, Unauthorized Modification, and Service Disruption in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73778",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a device in its factory-default or post-ZTP state before any administrator has configured credentials by providing a predictable factory-default password. Successful exploitation could result in full administrative control of the affected device during the initial setup process.  ",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-749",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.1,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.1,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 8.1,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Credential Manager Vulnerability Allows Unauthorized Administrative Access"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73777",
      "notes": [
        {
          "category": "details",
          "text": "Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-807, VULN-810, VULN-813, VULN-819",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation. ",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 8.1,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 8.1,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 8.1,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authorization Bypass Vulnerabilities Leading to Privilege Escalation in AOS-CX API Endpoint"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73776",
      "notes": [
        {
          "category": "details",
          "text": "A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could allow an authenticated malicious actor with administrative privileges to execute arbitrary code on the underlying operating system, when certain pre-conditions outside of the attacker’s control are met.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-829",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "NONE",
            "baseScore": 7.9,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.9,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "CHANGED",
            "temporalScore": 7.9,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Signature Verification Bypass Leading to Arbitrary Code Execution in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73775",
      "notes": [
        {
          "category": "details",
          "text": "Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by AOS-CX.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-725, VULN-726",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 7.7,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.7,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "LOW",
            "scope": "CHANGED",
            "temporalScore": 7.7,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Sensitive Information Disclosure Vulnerabilities in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73774",
      "notes": [
        {
          "category": "details",
          "text": "A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated disclosure of sensitive information by sending specially crafted packets to the affected system. Successful exploitation of this vulnerability could result in limited disclosure or modification of information and disruption of the affected system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-341",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.6,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "LOW",
            "environmentalScore": 7.6,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "LOW",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 7.6,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Buffer Overflow Vulnerability leads to Sensitive Information Disclosure in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "names": [
            "BUND"
          ],
          "organization": "HPE Networking Bug Bounty Program",
          "summary": "This vulnerability was discovered and reported by BUND through HPE Networking's Bug Bounty program."
        }
      ],
      "cve": "CVE-2026-73773",
      "notes": [
        {
          "category": "details",
          "text": "An unauthenticated Denial-of-Service (DoS) vulnerability exists in the API endpoint of AOS-CX. Successful exploitation of this vulnerability results in the ability to interrupt the normal operation of the affected service.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-589, VULN-812",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.5,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "NONE",
            "environmentalScore": 7.5,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 7.5,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Denial-of-Service (DoS) Vulnerability in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73771",
      "notes": [
        {
          "category": "details",
          "text": "An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper authentication processing. An unauthenticated remote attacker could exploit this vulnerability under specific conditions to bypass authentication controls or exhaust system resources. Successful exploitation could result in unauthorized access or denial of service affecting the management interface. ",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-814, VULN-954",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.5,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.5,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 7.5,
            "temporalSeverity": "HIGH",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Improper Authentication Handling in AOS-CX Management Interface and API"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73770",
      "notes": [
        {
          "category": "details",
          "text": "An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious actor, under specific conditions outside the attacker's control and following a required action by another user, to create or modify arbitrary files and execute arbitrary commands as a privileged user on the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-754",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.3,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.4,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "CHANGED",
            "temporalScore": 7.3,
            "temporalSeverity": "HIGH",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Arbitrary File Write Vulnerability Leading to Remote Code Execution in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73768",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malformed input. Successful exploitation could result in the execution of arbitrary commands with root privileges.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-743",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "LOCAL",
            "availabilityImpact": "HIGH",
            "baseScore": 7.3,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.3,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 7.3,
            "temporalSeverity": "HIGH",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Local Privilege Escalation in AOS-CX Command Line Interface"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73767",
      "notes": [
        {
          "category": "details",
          "text": "Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities results in the ability to execute arbitrary commands as a privileged user on the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-296, VULN-302, VULN-344, VULN-345, VULN-346, VULN-349, VULN-350, VULN-825, VULN-718, VULN-767, VULN-739, VULN-740, VULN-786",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.2,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.2,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "temporalScore": 7.2,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Remote Command Injection Vulnerabilities in AOS-CX Command Line Interface"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73766",
      "notes": [
        {
          "category": "details",
          "text": "Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker with administrative privileges to inject arbitrary commands. Successful exploitation could allow an attacker to execute arbitrary commands as a privileged user on the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-738, VULN-755, VULN-756, VULN-789, VULN-790, VULN-792, VULN-793, VULN-796, VULN-797, VULN-798, VULN-799, VULN-358, VULN-761, VULN-775, VULN-785, VULN-795, VULN-751, VULN-816, VULN-765, VULN-303, VULN-354, VULN-839, VULN-748, VULN-791, VULN-794, VULN-731. ",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.2,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.2,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "temporalScore": 7.2,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Command Injection Vulnerabilities in the API Endpoint of AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73765",
      "notes": [
        {
          "category": "details",
          "text": "Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of these vulnerabilities allows an attacker to write arbitrary files to the underlying operating system, which could lead to remote code execution.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-763, VULN-764, VULN-766",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 7.2,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.2,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "temporalScore": 7.2,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Path Traversal Vulnerabilities Lead to Remote Code Execution in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73764",
      "notes": [
        {
          "category": "details",
          "text": "Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. In some cases this could enable unauthorized modification of affected resources and limited disruption of affected services.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-759, VULN-834",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "LOW",
            "baseScore": 7.1,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "NONE",
            "environmentalScore": 7.1,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 7.1,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authentication Bypass Vulnerabilities Leading to Unauthorized Modification and Service Disruption in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73763",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands. Successful exploitation could result in remote execution of arbitrary commands in the context of the affected utility. ",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-841",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "LOW",
            "baseScore": 7.1,
            "baseSeverity": "HIGH",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 7.1,
            "environmentalSeverity": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 7.1,
            "temporalSeverity": "HIGH",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Remote Command Execution in Management Component"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73762",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases this could enable unauthorized access to management functionality that should be restricted by the configured access control policy.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-734",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "LOW",
            "baseScore": 6.6,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "LOW",
            "environmentalScore": 6.6,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "LOW",
            "privilegesRequired": "HIGH",
            "scope": "CHANGED",
            "temporalScore": 6.6,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authorization Bypass in the API Endpoint of AOS-CX Leads to Unauthorized Access"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73772",
      "notes": [
        {
          "category": "details",
          "text": "Buffer overflow vulnerabilities exist in an underlying service of AOS-CX that could lead to an unauthenticated denial-of-service condition by sending specially crafted packets to the affected device. Successful exploitation of these vulnerabilities results in a disruption of normal operation of the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-729, VULN-340, VULN-741, VULN-742, VULN-772, VULN-777, VULN-780, VULN-782, VULN-783, VULN-804, VULN-805, VULN-809, VULN-836, VULN-837, VULN-838, VULN-842, VULN-348, VULN-342, VULN-343, VULN-956, VULN-955, VULN-297, VULN-352",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "NONE",
            "environmentalScore": 6.5,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 6.5,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Buffer Overflow Vulnerabilities lead to Denial-of-Service in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73761",
      "notes": [
        {
          "category": "details",
          "text": "An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially crafted packet. Successful exploitation of this vulnerability results in the ability to disclose sensitive information from the underlying operating system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-828",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 6.5,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 6.5,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Out-of-Bounds Read Vulnerability leads to Information Disclosure in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73759",
      "notes": [
        {
          "category": "details",
          "text": "Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending specially crafted packets. Successful exploitation of these vulnerabilities results in disruption of normal operation on affected devices.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-728, VULN-369, VULN-760, VULN-771, VULN-779, VULN-808, VULN-298, VULN-359, VULN-730, VULN-744, VULN-745, VULN-747, VULN-778, VULN-815, VULN-818",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "ADJACENT_NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "NONE",
            "environmentalScore": 6.5,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 6.5,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Denial-of-Service Vulnerabilities in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73760",
      "notes": [
        {
          "category": "details",
          "text": "An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read arbitrary files from the web-based management interface of the underlying operating system, which could lead to remote unauthorized access to files.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-752",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 6.5,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 6.5,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Path Traversal Vulnerability Leads to Remote Unauthorized Access to Files in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73758",
      "notes": [
        {
          "category": "details",
          "text": "A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low privilege operator user to change the state of certain settings of a vulnerable system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-843",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 6.5,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "NONE",
            "environmentalScore": 6.5,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "HIGH",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 6.5,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Privilege Escalation Vulnerability via Broken Access Control in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73757",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A successful exploit allows an attacker to enumerate information about the internal structure of the AOS-CX host, leading to potential disclosure and limited modification of sensitive information.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-351",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 6.4,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "LOW",
            "environmentalScore": 6.4,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "LOW",
            "privilegesRequired": "LOW",
            "scope": "CHANGED",
            "temporalScore": 6.4,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Server-Side Request Forgery (SSRF) Leading to Information Disclosure in AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "This vulnerability was discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73756",
      "notes": [
        {
          "category": "details",
          "text": "A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a man-in-the-middle attack. Successful exploitation allows an attacker to retrieve data which could be used to further compromise the confidentiality of the affected system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-355",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 5.9,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 5.9,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "NONE",
            "scope": "UNCHANGED",
            "temporalScore": 5.9,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Unauthenticated Sensitive Information Disclosure via Man-in-the-Middle in AOS-CX via API Endpoint"
    },
    {
      "acknowledgments": [
        {
          "names": [
            "Haxship1337"
          ],
          "organization": "HPE Networking Bug Bounty Program",
          "summary": "This vulnerability was discovered and reported by Haxship1337 through HPE Networking's Bug Bounty program."
        }
      ],
      "cve": "CVE-2026-73755",
      "notes": [
        {
          "category": "details",
          "text": "A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low-privilege operator user, after a required user action, to access sensitive information from the vulnerable system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-374",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "NONE",
            "baseScore": 5.7,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "HIGH",
            "environmentalScore": 5.7,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 5.7,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "REQUIRED",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Privilege Escalation via Unauthorized Access to Sensitive Session Information"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73754",
      "notes": [
        {
          "category": "details",
          "text": "Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user to disrupt the normal operation of a vulnerable system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-719, VULN-720, VULN-721, VULN-722 VULN-723, VULN-724, VULN-835",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "HIGH",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 5.3,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "NONE",
            "environmentalScore": 5.3,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "LOW",
            "scope": "UNCHANGED",
            "temporalScore": 5.3,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Denial-of-Service Vulnerabilities in the Command Line Interface of AOS-CX"
    },
    {
      "acknowledgments": [
        {
          "organization": "HPE Networking",
          "summary": "These vulnerabilities were discovered by internal security research at HPE Networking."
        }
      ],
      "cve": "CVE-2026-73783",
      "notes": [
        {
          "category": "details",
          "text": "Stack overflow vulnerabilities exist in an API endpoint of AOS-CX. Successful exploitation could allow an authenticated malicious actor to cause a denial-of-service condition on the affected system.",
          "title": "Details"
        },
        {
          "category": "other",
          "text": "VULN-732, VULN-733, VULN-735, VULN-758, VULN-770",
          "title": "Internal References"
        }
      ],
      "product_status": {
        "fixed": [
          "10.18.1002",
          "10.17.1030",
          "10.16.1060",
          "10.13.1190",
          "10.10.1181"
        ],
        "known_affected": [
          ">=10.18.0000|<=10.18.0001",
          ">=10.17.0000|<=10.17.1021",
          ">=10.16.0000|<=10.16.1051",
          ">=10.13.0000|<=10.13.1180",
          ">=10.10.0000|<=10.10.1180"
        ]
      },
      "remediations": [
        {
          "category": "workaround",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "To minimize the likelihood of an attacker exploiting these vulnerabilities, HPE Networking recommends that the CLI and web-based management interfaces be restricted to a dedicated layer 2 segment/VLAN and/or controlled by firewall policies at layer 3 and above along with accounting controls for tracking and logging user activities and resource usage.",
          "product_ids": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        },
        {
          "category": "vendor_fix",
          "date": "2026-09-01T16:00:00.000Z",
          "details": "In order to address the vulnerabilities described in the Details Section, HPE Networking recommends upgrading the HPE Aruba Networking AOS-CX software to one of the following versions (as applicable): \n \n    - AOS-CX 10.10.1181 and above \n    - AOS-CX 10.13.1190 and above \n    - AOS-CX 10.16.1060 and above \n    - AOS-CX 10.17.1030 and above \n    - AOS-CX 10.18.1002 and above \n\nSoftware versions with resolution/fixes for the disclosed vulnerabilities can be downloaded from the HPE Networking Support Portal at: https://networkingsupport.hpe.com/home/. \n \nProduct software versions that have reached End of Maintenance (EoM) are presumed to be affected by the vulnerabilities unless explicitly stated otherwise, and are not completely addressed by this security advisory. For deployments running software versions that are past End of Support (EoS), HPE Networking has not assessed exposure to the vulnerabilities referenced in this advisory. As a result, such installations should be considered potentially impacted by the listed CVE. Customers are strongly encouraged to upgrade to a supported software release to ensure proper evaluation and remediation.",
          "product_ids": [
            "10.18.1002",
            "10.17.1030",
            "10.16.1060",
            "10.13.1190",
            "10.10.1181"
          ],
          "url": "https://networkingsupport.hpe.com/home/"
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 4.9,
            "baseSeverity": "MEDIUM",
            "confidentialityImpact": "NONE",
            "environmentalScore": 4.9,
            "environmentalSeverity": "MEDIUM",
            "integrityImpact": "NONE",
            "privilegesRequired": "HIGH",
            "scope": "UNCHANGED",
            "temporalScore": 4.9,
            "temporalSeverity": "MEDIUM",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H",
            "version": "3.1"
          },
          "products": [
            ">=10.18.0000|<=10.18.0001",
            ">=10.17.0000|<=10.17.1021",
            ">=10.16.0000|<=10.16.1051",
            ">=10.13.0000|<=10.13.1180",
            ">=10.10.0000|<=10.10.1180"
          ]
        }
      ],
      "title": "Authenticated Stack Overflow Vulnerabilities lead to Denial-of-Service in AOS-CX"
    }
  ]
}