CVE-2026-73750: Authenticated Buffer Overflow Vulnerabilities in AOS-CX API Endpoint Leads to Possible Code Execution
Published Sep 1, 2026
·Updated
Vulnerabilities exist in the authentication module that may improperly process malformed or truncated input. An authenticated remote attacker could exploit these vulnerabilities by providing specially crafted input from a compromised or hostile authentication server. Successful exploitation could result in a Denial-of-Service or potential remote code execution with elevated privileges.
Event History
Sep 1, 2026
CVE Published
via MITRE·08:28 PM
Data Sourced
via MITRE·08:28 PM
DescriptionSeverity
Frequently Asked Questions
1
What access and infrastructure would an attacker need to exploit this issue?
The attacker must be authenticated and remote, and exploitation involves supplying specially crafted malformed or truncated input from a compromised or hostile authentication server.
2
What is the likely impact if exploitation succeeds?
Successful exploitation may cause a denial of service or potentially allow remote code execution with elevated privileges.