CVE-2026-73761: Unauthenticated Out-of-Bounds Read Vulnerability leads to Information Disclosure in AOS-CX
Published Sep 1, 2026
·Updated
An out-of-bounds read vulnerability exists in the underlying operating system of AOS-CX that could lead to unauthenticated information disclosure by sending a specially crafted packet. Successful exploitation of this vulnerability results in the ability to disclose sensitive information from the underlying operating system.
Affected Software
1 affected component
AOS-CX
Event History
Sep 1, 2026
CVE Published
via MITRE·08:28 PM
Data Sourced
via MITRE·08:28 PM
DescriptionSeverity
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The attacker needs adjacent-network access and must send a specially crafted packet. No authentication, privileges, or user interaction are required.
2
What is the expected security impact if exploitation succeeds?
The impact is limited to confidentiality: sensitive information from the underlying operating system may be disclosed. The provided vector indicates no integrity or availability impact.