PT-2026-40363 · Aruba · Aos-8+1

Zzcentury

·

Published

2026-05-12

·

Updated

2026-05-12

·

CVE-2026-44853

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AOS-8 (affected versions not specified) AOS-10 (affected versions not specified)
Description Command injection flaws exist in the web-based management interface. An authenticated remote attacker could exploit these issues to upload arbitrary files to the underlying operating system, which may lead to remote code execution with privileged permissions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Command Injection

Weakness Enumeration

Related Identifiers

CVE-2026-44853

Affected Products

Aos 10
Aos-8