VYPR

AOS-S

by HPE

CVEs (9)

  • CVE-2026-76744CriOct 6, 2026
    risk 0.64cvss 9.8epss —

    Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to execute arbitrary code.

  • CVE-2026-76743CriOct 6, 2026
    risk 0.64cvss 9.8epss —

    A vulnerability have been identified in the management interface of AOS-S that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls if certain preconditions outside of the attacker's control are met. Successful exploitation…

  • CVE-2026-76742CriOct 6, 2026
    risk 0.64cvss 9.8epss —

    Authentication bypass vulnerabilities exist in the web management interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to gain unauthorized access to the affected system.

  • CVE-2026-76745CriOct 6, 2026
    risk 0.62cvss 9.6epss —

    Memory corruption vulnerabilities exist in AOS-S that are reachable by an unauthenticated adjacent attacker. Successful exploitation could allow an attacker to execute arbitrary code.

  • CVE-2026-76746CriOct 6, 2026
    risk 0.60cvss 9.3epss —

    An unauthenticated buffer overflow vulnerability exists in AOS-S. Successful exploitation could allow an unauthenticated adjacent attacker to expose sensitive memory contents and cause a denial of service on the affected device.

  • CVE-2026-76747CriOct 6, 2026
    risk 0.59cvss 9.1epss —

    Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an unauthenticated remote attacker to expose sensitive memory contents and cause a denial of service on the device.

  • CVE-2026-76748HigOct 6, 2026
    risk 0.57cvss 8.8epss —

    A privilege escalation vulnerability exists in the API of AOS-S. Successful exploitation could allow an authenticated read-only user to escalate their privileges and gain administrative access to the affected system.

  • CVE-2026-76749MedOct 6, 2026
    risk 0.42cvss 6.5epss —

    A sensitive information disclosure vulnerability exists in AOS-S. Successful exploitation could allow an unauthenticated remote attacker to access sensitive information.

  • CVE-2026-76741MedOct 6, 2026
    risk 0.42cvss 6.5epss —

    Buffer overflow vulnerabilities exist in the affected interface of AOS-S. Successful exploitation could allow an authenticated remote attacker to cause a denial-of-service condition on the affected system.