HPE warns of dangerous security flaw that could allow Aruba OS password reset


  • HPE fixes five vulnerabilities in Aruba AOS-CX
  • A critical flaw (CVE-2026-23813) allowed the administrator password to be reset
  • Company Requests Mitigation Measures Until Patches Are Applied

Hewlett Packard Enterprise (HPE) has alerted its customers after discovering five vulnerabilities in its products, including one that cybercriminals could exploit to take over certain endpoints.

In a recently released security advisory, HPE said it has fixed a critical authentication bypass flaw that can be used by unauthenticated attackers in low-complexity attacks to reset administrator passwords. The bug is now tracked as CVE-2026-23813 and has a severity score of 9.1/10 (critical).

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top