SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-73749

CRITICAL · CVSS 9.8 EPSS 0.49% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

Multiple vulnerabilities in a daemon of AOS-CX allow unauthenticated remote attackers to exploit improper processing of malformed input by sending specially crafted packets. Successful exploitation could lead to remote code execution with elevated privileges, posing a critical risk to affected systems. Organizations using AOS-CX should prioritize immediate remediation to mitigate potential attacks.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit remote code execution code execution

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-73749
Severity
CRITICAL
CVSS
9.8
EPSS
0.49%

Original NVD Description

Multiple vulnerabilities exist in a daemon of AOS-CX that may allow for improper processing of malformed input. An unauthenticated remote attacker could exploit these vulnerabilities by sending specially crafted packets to the affected service. Successful exploitation could result in remote code execution with elevated privileges.

Related CVEs

Other vulnerabilities affecting the same vendor(s)