CVE-2026-73770

high HPE
CVSS v3 Base Score
7.3
CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H
EPSS Score
0.1%
Exploitation probability in 30 days
Top 96% most likely to be exploited
Attack Characteristics
Attack Vector
Adjacent
Attack Complexity
High
Privileges Required
High
User Interaction
Required
Confidentiality
High
Integrity
High
Availability
High
Published: September 1, 2026 (4 days ago)
Last Modified: September 3, 2026
Vendor: HPE
Source: MITRE

Description

An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious actor, under specific conditions outside the attacker's control and following a required action by another user, to create or modify arbitrary files and execute arbitrary commands as a privileged user on the underlying operating system.

Affected Products

Hewlett Packard Enterprise (HPE) AOS-CX

References