VYPR
Unrated severityNVD Advisory· Published Mar 21, 2023· Updated Feb 26, 2025

Authenticated Remote Code Execution in Aruba CX Switches

CVE-2023-1168

Description

An authenticated remote code execution vulnerability exists in the AOS-CX Network Analytics Engine. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system, leading to a complete compromise of the switch running AOS-CX.

Affected products

2
  • Hewlett Packard Enterprise (HPE)/Aruba CX 10000 Switch Series, Aruba CX 9300 Switch Series, Aruba CX 8400 Switch Series, Aruba CX 8360 Switch Series, Aruba CX 8325 Switch Series, Aruba CX 8320 Switch Series, Aruba CX 6400 Switch Series, Aruba CX 6300 Switch Series, Aruba CX 6200F Switch Seriesv5
    Range: AOS-CX 10.10.xxxx: 10.10.1020 and below.

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.