Vulnerabilities · 185 days ago

Critical Flaw Lets Remote Actors Reset Admin Passwords on Aruba Switches

An unauthenticated critical vulnerability (CVE-2026-23813, CVSS 9.8) in the Aruba AOS‑CX web management interface allows remote actors to reset administrator passwords.

CVE-2026-23813

NVD KEV

CVSS 9.8 CRITICAL: a vulnerability has been identified in the web-based management interface of AOS-CX switches that could potentially…

Timeline

Sources

1 source covering this story

Entities

Part of the PlainSec briefing for 2026-03-15

Editions

Related stories