Impact
A vulnerability exists in the operating system underlying HPE Networking Fabric Composer that allows an unauthenticated adjacent actor to bypass existing authentication controls, granting administrative privileges that enable modification of system configurations and manipulation of sensitive data. The impact includes compromise of confidentiality, integrity, and availability of the Fabric Composer environment.
Affected Systems
The affected vendor is Hewlett Packard Enterprise and the product is the Fabric Composer. No version information is specified in the data provided.
Risk and Exploitability
The CVSS score of 6.8 indicates moderate severity. The EPSS score of < 1% indicates a low probability of exploitation, and the vulnerability is not listed in the CISA KEV catalog, suggesting the current exploitation risk is uncertain but potentially serious. Attackers would likely need proximity on the same physical or logical network and must exploit the authentication bypass to gain administrative control; no publicly known exploits are reported yet.
OpenCVE Enrichment