HPE
HPE Edgeconnect Operating System: vulnerabilidades y CVE
HPE Edgeconnect Operating System tiene 38 vulnerabilidades publicadas, 38 de ellas en los últimos 12 meses. 6 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE38
Últimos 12 meses38
Críticas6
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-76707 | Media (4.3) | 0.23% | — | 15 sept 2026 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an attacker to gain insight into… |
| CVE-2026-76706 | Media (5.3) | 0.42% | — | 15 sept 2026 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could result in the… |
| CVE-2026-76705 | Media (5.5) | 0.54% | — | 15 sept 2026 | A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with Admin privilege to execute arbitrary… |
| CVE-2026-76704 | Media (5.5) | 0.33% | — | 15 sept 2026 | A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a victim's browser in the context of the… |
| CVE-2026-76703 | Media (5.5) | 0.38% | — | 15 sept 2026 | A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow an authenticated attacker with administrative access to cause a denial of… |
| CVE-2026-76702 | Media (5.8) | 0.11% | — | 15 sept 2026 | A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause a denial-of-service. Successful exploitation could allow an attacker to disrupt… |
| CVE-2026-76701 | Media (5.9) | 0.39% | — | 15 sept 2026 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access sensitive information. Successful exploitation could allow an attacker to… |
| CVE-2026-76700 | Media (5.9) | 0.46% | — | 15 sept 2026 | Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service. Successful exploitation could allow an attacker to interrupt the normal… |
| CVE-2026-76699 | Media (6.4) | 0.22% | — | 15 sept 2026 | A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated adjacent attacker to cause a… |
| CVE-2026-76698 | Media (6.5) | 4.5% | — | 15 sept 2026 | A command injection vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways. An authenticated remote attacker with limited access privileges could exploit this… |
| CVE-2026-76697 | Media (6.5) | 0.46% | — | 15 sept 2026 | A vulnerability in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways could allow a remote attacker authenticated with low privileges to access sensitive information. A successful exploit… |
| CVE-2026-76696 | Media (6.5) | 0.27% | — | 15 sept 2026 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct a denial of service attack. Successful exploitation could allow an attacker to crash the system,… |
| CVE-2026-76695 | Media (6.5) | 0.48% | — | 15 sept 2026 | Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to send specially crafted packets to the… |
| CVE-2026-76694 | Media (6.6) | 0.54% | — | 15 sept 2026 | A privilege escalation vulnerability exists in the command line interface of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with high privileges to… |
| CVE-2026-76693 | Alta (7) | 0.36% | — | 15 sept 2026 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service against certain services running on impacted Gateways. |
| CVE-2026-76692 | Alta (7.1) | 0.28% | — | 15 sept 2026 | A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to obtain limited information from memory and disrupt the normal operation of the affected service.… |
| CVE-2026-76691 | Alta (7.2) | 0.76% | — | 15 sept 2026 | Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker to execute arbitrary commands as a privileged… |
| CVE-2026-76690 | Alta (7.2) | 1.1% | — | 15 sept 2026 | A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways that may allow for arbitrary command execution. An authenticated remote attacker could exploit this vulnerability by providing a… |
| CVE-2026-76689 | Alta (7.2) | 0.85% | — | 15 sept 2026 | A vulnerability exists in the configuration processing logic of the affected component where malformed input is improperly processed. An authenticated remote attacker with administrative privileges could exploit this… |
| CVE-2026-76688 | Alta (7.5) | 0.38% | — | 15 sept 2026 | Vulnerabilities have been identified in the web-based management interface of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls.… |
| CVE-2026-76687 | Alta (7.5) | 0.47% | — | 15 sept 2026 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow a low-privilege authenticated remote attacker to escalate privileges. Successful exploitation of this vulnerability may… |
| CVE-2026-76686 | Alta (7.5) | 0.57% | — | 15 sept 2026 | A vulnerability exists in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could allow an unauthenticated remote attacker to conduct a denial-of-service attack on… |
| CVE-2026-76685 | Alta (8.1) | 0.67% | — | 15 sept 2026 | A vulnerability exists in the proxy packet processing logic of the affected component where it improperly processes malformed or truncated input. An unauthenticated remote attacker could exploit this vulnerability by… |
| CVE-2026-76684 | Alta (8.1) | 0.46% | — | 15 sept 2026 | Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful… |
| CVE-2026-76683 | Alta (8.1) | 0.59% | — | 15 sept 2026 | Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host if certain… |
| CVE-2026-76682 | Alta (8.2) | 0.69% | — | 15 sept 2026 | A vulnerability in the network security monitoring component of intrusion detection systems could allow an unauthenticated remote attacker to exploit a limited buffer overflow. Successful exploitation could allow an… |
| CVE-2026-76681 | Alta (8.5) | 0.35% | — | 15 sept 2026 | A vulnerability in the API of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker with low privileges to access sensitive information beyond what is authorized by the user's existing privilege… |
| CVE-2026-76680 | Alta (8.5) | 0.36% | — | 15 sept 2026 | Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks. A successful exploit allows an… |
| CVE-2026-76679 | Alta (8.6) | 0.46% | — | 15 sept 2026 | Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct denial-of-service attacks. Successful exploitation could allow an attacker to crash the system,… |
| CVE-2026-76678 | Alta (8.8) | 0.63% | — | 15 sept 2026 | A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow a low-privilege authenticated remote attacker to escalate privileges. Successful exploitation of this vulnerability may… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.
Otros productos de HPE
Arubaos-cx · 57Integrated Lights-out 5 Firmware · 17Cloudline Cl3100 Gen10 Server Firmware · 16Cloudline Cl5200 Gen9 Server Firmware · 16Cloudline Cl5800 Gen10 Server Firmware · 16Cloudline Cl4100 Gen10 Server Firmware · 16Cloudline Cl5800 Gen9 Server Firmware · 16Baseboard Management Controller · 14Networking Instant ON · 12Insight Remote Support · 9Autopass License Server · 8Storeonce System · 8