← לוח פגיעויות

CVE-2026-23813

קריטית 9.8

תיאור (מקור, אנגלית)

A vulnerability has been identified in the web-based management interface of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. In some cases this could enable resetting the admin password.

מדדים

CVSS 3.1
9.8 (CRITICAL) מקור הציון: NVD CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS — סבירות ניצול
1% (אחוזון 100) נכון ל-23/9/2026
CWE
CWE-287

מוצרים מושפעים

hpe: arubaos-cx; hpe: aruba cx 10000-48y6c \(r8p13a\); hpe: aruba cx 10000-48y6c \(r8p14a\); hpe: aruba cx 10000-48y6c \(s0f98a\); hpe: aruba cx 10040 \(s4r58a\); hpe: aruba cx 10040 32p \(s4r54a\); hpe: aruba cx 10040 32p \(s4r55a\); hpe: aruba cx 10040 32p \(s4r56a\); hpe: aruba cx 4100i 12-port \(jl817a\); hpe: aruba cx 4100i 24-port \(jl818a\); hpe: aruba cx 6000 12g \(r8n89a\); hpe: aruba cx 6000 12p \(r8n89b\); hpe: aruba cx 6000 12p \(s4r21a\); hpe: aruba cx 6000 24g \(r8n87a\); hpe: aruba cx 6000 24g \(r8n88a\)

קישורים