Loading market data...

CVE Feed

Latest vulnerabilities from the National Vulnerability Database.

42028
Total
3422
Critical
12413
High
12340
Medium
CVE ID Severity Score Description Published
CVE-2026-73778 HIGH 8.1 A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a … Sep 01, 2026
CVE-2026-73777 HIGH 8.1 Vulnerabilities have been identified in the API endpoint of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Sep 01, 2026
CVE-2026-73776 HIGH 7.9 A signature verification bypass vulnerability exists in the command line interface of AOS-CX. Successful exploitation could allow an authenticated malicious actor with administrative privileges to … Sep 01, 2026
CVE-2026-73775 HIGH 7.7 Vulnerabilities in the API endpoint of AOS-CX could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit allows an … Sep 01, 2026
CVE-2026-73774 HIGH 7.6 A buffer overflow vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated disclosure of sensitive information by sending specially crafted … Sep 01, 2026
CVE-2026-73773 HIGH 7.5 An unauthenticated Denial-of-Service (DoS) vulnerability exists in the API endpoint of AOS-CX. Successful exploitation of this vulnerability results in the ability to interrupt the normal … Sep 01, 2026
CVE-2026-73772 MEDIUM 6.5 Buffer overflow vulnerabilities exist in an underlying service of AOS-CX that could lead to an unauthenticated denial-of-service condition by sending specially crafted packets to the … Sep 01, 2026
CVE-2026-73771 HIGH 7.5 An authentication vulnerability exists in the AOS-CX management interface and API that may allow improper authentication processing. An unauthenticated remote attacker could exploit this vulnerability … Sep 01, 2026
CVE-2026-73770 HIGH 7.3 An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious actor, under specific conditions outside the attacker's control and … Sep 01, 2026
CVE-2026-73768 HIGH 7.3 A vulnerability exists in the command line interface of AOS-CX that may allow for improper processing of malformed input. Successful exploitation could result in the … Sep 01, 2026
CVE-2026-73767 HIGH 7.2 Authenticated command injection vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation of these vulnerabilities results in the ability to execute arbitrary commands … Sep 01, 2026
CVE-2026-73766 HIGH 7.2 Command injection vulnerabilities in the API endpoint of AOS-CX could allow an authenticated remote attacker with administrative privileges to inject arbitrary commands. Successful exploitation could … Sep 01, 2026
CVE-2026-73765 HIGH 7.2 Authenticated path traversal vulnerabilities exist in API endpoints of AOS-CX. Successful exploitation of these vulnerabilities allows an attacker to write arbitrary files to the underlying … Sep 01, 2026
CVE-2026-73764 HIGH 7.1 Vulnerabilities have been identified in the operating system of AOS-CX switches that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. In … Sep 01, 2026
CVE-2026-73763 HIGH 7.1 A vulnerability exists in a management component that could allow an unauthenticated adjacent attacker to execute arbitrary commands. Successful exploitation could result in remote execution … Sep 01, 2026
CVE-2026-73762 MEDIUM 6.6 A vulnerability has been identified in the API endpoint of AOS-CX that could allow a remote actor to circumvent existing access controls. In some cases … Sep 01, 2026
CVE-2026-73761 MEDIUM 6.5 An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially crafted packet. … Sep 01, 2026
CVE-2026-73760 MEDIUM 6.5 An authenticated Path Traversal vulnerability exists in AOS-CX. Successful exploitation of this vulnerability allows an attacker to read arbitrary files from the web-based management interface … Sep 01, 2026
CVE-2026-73759 MEDIUM 6.5 Vulnerabilities in AOS-CX could allow an unauthenticated remote malicious actor to trigger a denial-of-service condition by sending specially crafted packets. Successful exploitation of these vulnerabilities … Sep 01, 2026
CVE-2026-73758 MEDIUM 6.5 A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low privilege operator user to change the state … Sep 01, 2026
CVE-2026-73757 MEDIUM 6.4 A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A successful … Sep 01, 2026
CVE-2026-73756 MEDIUM 5.9 A vulnerability in an API endpoint of AOS-CX could allow a remote unauthenticated attacker to obtain sensitive information via a man-in-the-middle attack. Successful exploitation allows … Sep 01, 2026
CVE-2026-73755 MEDIUM 5.7 A privilege escalation vulnerability exists in the API endpoint of AOS-CX. Successful exploitation could allow an authenticated low-privilege operator user, after a required user action, … Sep 01, 2026
CVE-2026-73754 MEDIUM 5.3 Denial-of-service vulnerabilities exist in the command line interface of AOS-CX. Successful exploitation could allow an authenticated user to disrupt the normal operation of a vulnerable … Sep 01, 2026
CVE-2026-73753 HIGH 8.8 Exploitation through affected command-line operations could allow an authenticated low-privileged user to execute arbitrary commands as a privileged user on the underlying operating system. Sep 01, 2026