DEV Community

Cover image for HPE Patches Multiple Flaws Aruba AOS-CX Including Critical Allowing Admin Password Resets
BeyondMachines for BeyondMachines

Posted on • Originally published at beyondmachines.net

HPE Patches Multiple Flaws Aruba AOS-CX Including Critical Allowing Admin Password Resets

Summary

HPE patched five vulnerabilities in Aruba AOS-CX, including a critical authentication bypass (CVE-2026-23813) that allows unauthenticated remote attackers to reset administrator passwords and take full control of switches.

Take Action:

Isolate your switch management interfaces on a separate VLAN that's only accessible from trusted networks. Then plan a patch cycle for your AOS-CX devices. For good measure, disable the web interface on all ports where it is not strictly necessary.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)