HPE warns of dangerous security flaw which could allow Aruba OS password resets



  • HPE patches five vulnerabilities in Aruba AOS-CX
  • Critical flaw (CVE-2026-23813) allowed admin password reset
  • Company urges mitigations until fixes are applied

Hewlett Packard Enterprise (HPE) has warned its customers after discovering five vulnerabilities in its products, including one which cybercriminals could use to take over certain endpoints.

In a newly released security advisory, HPE said it addressed a critical authentication bypass flaw that can be used by unauthenticated attackers in low-complexity attacks, to reset admin passwords. The bug is now tracked as CVE-2026-23813, and has a severity score of 9.1/10 (critical).


https://cdn.mos.cms.futurecdn.net/pVCXKrhThqmUjYVSZBjV5Z-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img