Security Advisory

CVE-2026-23819

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-12 18:31:33
Last updated 2026-05-12 19:31:00
Assigner hpe
CVSS score 8.8
State PUBLISHED

Description

A vulnerability in the web-based management interface of Access Points running AOS-10 and AOS-8 Instant could allow an unauthenticated remote attacker to execute arbitrary JavaScript code in a victim's browser within the same local network. Successful exploitation could allow an attacker to compromise user data and potentially manipulate device configuration settings.