Authentication Bypass Vulnerability in AOS-CX Switches by HPE
CVE-2026-73779

8.2HIGH

Key Information:

Vendor

HP (HP)

Status
Vendor
CVE Published:
1 September 2026

What is CVE-2026-73779?

A vulnerability has been discovered in the operating system of AOS-CX switches, which could potentially enable an unauthenticated remote actor to bypass established authentication mechanisms. If exploited, this could lead to significant risks, including the compromise of system integrity and unauthorized access to sensitive information, jeopardizing the security of your network infrastructure.

Affected Version(s)

AOS-CX 10.18.0000 <= 10.18.0001

AOS-CX 10.18.0000 <= 10.18.0001

AOS-CX 10.17.0000 <= 10.17.1021

References

CVSS V3.1

Score:
8.2
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

This vulnerability was discovered by internal security research at HPE Networking.
.