CVE-2026-63454
EUVD-2026-4635721.07.2026, 19:17
An authenticated path traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to copy arbitrary files to a user readable location from the command line interface of the underlying operating system, which could lead to remote code execution.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| hpe | arubaos-cx | 𝑥 ≤ 10.13.1170 |
| hpe | arubaos-cx | 10.16.0000 ≤ 𝑥 ≤ 10.16.1050 |
| hpe | arubaos-cx | 10.17.0000 ≤ 𝑥 ≤ 10.17.1020 |
| hpe | arubaos-cx | 10.18.0000 ≤ 𝑥 ≤ 10.18.0001 |
𝑥
= Vulnerable software versions