Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 02 Sep 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 CWE-918 |
Tue, 01 Sep 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability in the web-based management interface of AOS-CX could allow an authenticated remote attacker to conduct a server-side request forgery (SSRF) attack. A successful exploit allows an attacker to enumerate information about the internal structure of the AOS-CX host, leading to potential disclosure and limited modification of sensitive information. | |
| Title | Authenticated Server-Side Request Forgery (SSRF) Leading to Information Disclosure in AOS-CX | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2026-09-01T20:28:12.964Z
Reserved: 2026-08-13T16:38:28.877Z
Link: CVE-2026-73757
No data.
Status : Received
Published: 2026-09-01T21:18:42.337
Modified: 2026-09-01T21:18:42.337
Link: CVE-2026-73757
No data.
OpenCVE Enrichment
Updated: 2026-09-02T02:00:13Z