Buffer Overflow Vulnerability in AOS-CX Command Line Interface by HPE
CVE-2026-63453
7.2HIGH
What is CVE-2026-63453?
A buffer overflow vulnerability has been identified in the command line interface of AOS-CX. If successfully exploited, this flaw could allow a remote user with high privileges to execute arbitrary code on the underlying operating system, potentially compromising system integrity and security. Immediate action and patching are recommended for affected versions to mitigate this risk.
Affected Version(s)
AOS-CX 10.17.0000 <= 10.17.1020
AOS-CX 10.17.0000 <= 10.17.1020
AOS-CX 10.16.0000 <= 10.16.1050
References
CVSS V3.1
Score:
7.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
This vulnerability was discovered by LIUPENG through the HPE Aruba Networking Bug Bounty program.
