As cited
Copy frozen at (site build).
NCSC-2026-0340 [1.00] [M/H] Kwetsbaarheden verholpen in Aruba Networks ArubaOS-CX
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
NCSC-2026-0340 [1.00] [M/H] Kwetsbaarheden verholpen in Aruba Networks ArubaOS-CX
Aruba Networks patched multiple vulnerabilities in ArubaOS-CX, its network operating system, affecting the command line interface, application programming interface (API) endpoints, and web management interface. The flaws enable unauthorized access through authentication bypass, remote code execution (RCE) via format strings and command injection, privilege escalation, and denial-of-service attacks. Some vulnerabilities require no authentication, while others need low-privilege user credentials, and successful exploitation could result in arbitrary code execution with elevated privileges, unauthorized configuration changes, data theft, or service disruption.
Why it matters: Network operators running Aruba ArubaOS-CX devices must patch immediately to prevent unauthenticated RCE and authenticated privilege escalation that could compromise network infrastructure and sensitive information.
- Source published
- First seen by Cybersecurity Tracker