Security Advisory

CVE-2026-44872

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-05-12 19:18:16
Last updated 2026-05-15 20:04:56
Assigner hpe
CVSS score 7.2
State PUBLISHED

Description

A command injection vulnerability exists in the web-based management interface of AOS-8 and AOS-10 Operating Systems. Successful exploitation could allow an authenticated remote attacker to place arbitrary files on the underlying filesystem of the affected device.