CVE-2026-73773
An attacker can exploit multiple vulnerabilities in Aruba ArubaOS-CX to execute arbitrary code with elevated/root privileges, bypass security measures, obtain elevated privileges including administrator access, disclose or manipulate data, perform cross-site scripting, or cause denial-of-service conditions.
CSIRTS triage
- What
- Multiple vulnerabilities allow attackers to execute arbitrary code with elevated privileges, bypass security, escalate privileges, disclose or manipulate data, perform XSS, and cause denial-of-service.
- Who is affected
- All Aruba ArubaOS-CX deployments across the affected version range are vulnerable to one or more attack vectors.
- Urgency
- High severity; remote code execution and privilege escalation present multiple critical attack paths requiring immediate patching.
- Action
- Apply Aruba security patches for ArubaOS-CX vulnerabilities immediately.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch CVE-2026-73773
Get an email if CVE-2026-73773 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.
Advisory coverage (3)
- high[NEW] [high] Aruba ArubaOS-CX: Multiple vulnerabilitiescert-bund · 2026-09-02
- unknownMultiple vulnerabilities in HPE Aruba Networking products (02 September 2026)cert-fr-avis · 2026-09-02
- highCVE-2026-73773: An unauthenticated Denial-of-Service (DoS) vulnerability exists in the API endpoint of AOS-CX.…nvd · 2026-09-01
External references
Embed the live status
— this badge updates automatically when the KEV or exploit status changes. How to embed it →
[](https://www.csirts.com/cve/CVE-2026-73773)