CVE Feed

    Dashboard / CVE / CVE-2023-1168

    CVE-2023-1168

    An authenticated remote code execution vulnerability exists in the AOS-CX Network Analytics Engine. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system, leading to a complete compromise of the switch running AOS-CX.

    Published:Mar 21, 2023
    Last Modified:Feb 26, 2025
    EPS:Mar 21, 2023
    EPSS Score:0.01492
    CVSS Score:7.2

    Affected Products

    Vendor
    Hpe
    Product
    Aruba Cx 10000-48y6
    Vendor
    Hpe
    Product
    Aruba Cx 6200f 48g
    Vendor
    Hpe
    Product
    Aruba Cx 6200m 24g
    Vendor
    Hpe
    Product
    Aruba Cx 6300m 24p
    Vendor
    Hpe
    Product
    Aruba Cx 6300m 48g
    Vendor
    Hpe
    Product
    Aruba Cx 6405
    Vendor
    Hpe
    Product
    Aruba Cx 6410
    Vendor
    Hpe
    Product
    Aruba Cx 8320-32
    Vendor
    Hpe
    Product
    Aruba Cx 8320-48p
    Vendor
    Hpe
    Product
    Aruba Cx 8325-32c
    Vendor
    Hpe
    Product
    Aruba Cx 8325-48y8c
    Vendor
    Hpe
    Product
    Aruba Cx 8360-12c
    Vendor
    Hpe
    Product
    Aruba Cx 8360-16y2c
    Vendor
    Hpe
    Product
    Aruba Cx 8360-24xf2c
    Vendor
    Hpe
    Product
    Aruba Cx 8360-32y4c
    Vendor
    Hpe
    Product
    Aruba Cx 8360-48xt4c
    Vendor
    Hpe
    Product
    Aruba Cx 8360-48y6c
    Vendor
    Hpe
    Product
    Aruba Cx 8400
    Vendor
    Hpe
    Product
    Aruba Cx 9300 32d
    Vendor
    Hpe
    Product
    Arubaos-cx

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High