Cyber Posture

CVE-2026-44852

High

Published: 12 May 2026

Published
12 May 2026
Modified
12 May 2026
KEV Added
Patch
CVSS Score 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
EPSS Score N/A
Risk Priority 14 60% EPSS · 20% KEV · 20% CVSS

Summary

CVE-2026-44852 is a high-severity an unspecified weakness vulnerability in Hpe (inferred from references). Its CVSS base score is 7.2 (High).

Operationally, it is not currently listed in the CISA KEV catalog.

NVD Description

An authenticated remote code execution vulnerability exists in the AOS-8 and AOS-10 web-based management interface. A vulnerability in the certificate download functionality could allow an authenticated remote attacker to overwrite arbitrary files on the underlying operating system by exploiting improper…

more

input validation in the file path parameter. Successful exploitation could allow the attacker to execute arbitrary commands on the underlying operating system as a privileged user.

Deeper analysisAI

Automated synthesis unavailable for this CVE.

Details

CWE(s)
None listed

Affected Products

Hpe
inferred from references and description; NVD did not file a CPE for this CVE

References