Vai al contenuto
CodeAuditAgent

CVE-2026-73778

A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a device in its factory-default or post-ZTP state before any administrator has configured credentials by providing a predictable factory-default password. Successful exploitation could result in full administrative control of the affected device during the initial setup process.

Debolezza

A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a device in its factory-default or post-ZTP state before any administrator has configured credentials by providing a predictable factory-default password. Successful exploitation could result in full administrative control of the affected device during the initial setup process.

Prodotti interessati

  • hpe arubaos-cx
  • hpe aruba_cx_10000-48y6c_\(r8p13a\)
  • hpe aruba_cx_10000-48y6c_\(r8p14a\)
  • hpe aruba_cx_10000-48y6c_\(s0f98a\)
  • hpe aruba_cx_10040_\(s4r58a\)
  • hpe aruba_cx_10040_32p_\(s4r54a\)
  • hpe aruba_cx_10040_32p_\(s4r55a\)
  • hpe aruba_cx_10040_32p_\(s4r56a\)

Riferimenti

Trova il bug prima di un attaccante.

Accedi con GitHub e avvia il tuo primo audit in meno di un minuto. Il piano gratuito non richiede carta di credito.