SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-73770

HIGH · CVSS 7.3 EPSS 0.15% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

An authenticated arbitrary file write vulnerability in AOS-CX allows a malicious actor to exploit specific conditions, enabling them to create or modify files and execute commands with elevated privileges on the underlying operating system. This poses a significant risk to systems where AOS-CX is deployed, particularly in environments where user actions can be manipulated. Organizations using AOS-CX should prioritize immediate remediation to mitigate potential unauthorized access and system compromise.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-73770
Severity
HIGH
CVSS
7.3
EPSS
0.15%

Original NVD Description

An authenticated arbitrary file write vulnerability exists in AOS-CX. Successful exploitation could allow an authenticated malicious actor, under specific conditions outside the attacker's control and following a required action by another user, to create or modify arbitrary files and execute arbitrary commands as a privileged user on the underlying operating system.

Related CVEs

Other vulnerabilities affecting the same vendor(s)