CVE-2026-76676
8.8
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Summary
Buffer overflow vulnerabilities exist in the underlying operating system of EdgeConnect SD-WAN Gateways that could allow an unauthenticated adjacent attacker to execute arbitrary code if certain preconditions outside of the attacker's control are met. Successful exploitation could allow an attacker to execute arbitrary code as a privileged user on the underlying operating system leading to complete system compromise.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | 9.7.0.0 <= 9.7.0.0 | affected |
| Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | 9.6.0.0 <= 9.6.3.1 | affected |
| Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | 9.5.0.0 <= 9.5.8.1 | affected |
| Hewlett Packard Enterprise (HPE) | EdgeConnect SD-WAN Gateways | 9.4.0.0 <= 9.4.8.2 | affected |
Weaknesses
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.