Denial-of-Service Vulnerabilities in AOS-CX Command Line Interface by HPE
CVE-2026-73754

5.3MEDIUM

Key Information:

Vendor

HP (HP)

Status
Vendor
CVE Published:
1 September 2026

What is CVE-2026-73754?

A denial-of-service vulnerability exists in the command line interface of AOS-CX, a network operating system by Hewlett Packard Enterprise. When exploited by an authenticated user, it can disrupt the normal operation of affected systems, potentially leading to service outages. Organizations utilizing AOS-CX should assess their security posture and apply relevant patches to mitigate risks associated with these vulnerabilities.

Affected Version(s)

AOS-CX 10.18.0000 <= 10.18.0001

AOS-CX 10.18.0000 <= 10.18.0001

AOS-CX 10.17.0000 <= 10.17.1021

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

This vulnerability was discovered by internal security research at HPE Networking.
.