Description
A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways that may allow for arbitrary command execution. An authenticated remote attacker could exploit this vulnerability by providing a specially crafted input to the affected component. Successful exploitation could result in remote code execution as root.
Published: 2026-09-15
Score: 7.2 High
EPSS: n/a
KEV: No
Impact: Remote Code Execution
Action: Patch
AI Analysis

Impact

The flaw permits an attacker who can authenticate to the HPE EdgeConnect gateway to send a specially crafted input that causes the device to execute arbitrary operating‑system commands as root, providing full system control. The vulnerability is characteristic of command injection, allowing the attacker to run whichever commands they choose with the privileges of the gateway’s most privileged account. The CVSS base score of 7.2 reflects the significant impact and required authentication for exploitation.

Affected Systems

All Hewlett Packard Enterprise EdgeConnect SD‑WAN Gateways are listed as affected. The advisory does not specify firmware or hardware revisions, indicating that any deployed gateway at the time should be considered vulnerable. Administrators should identify which gateway models are in use and determine if they run the impacted image.

Risk and Exploitability

Exploitation requires valid credentials; once authenticated, the attacker may exploit the input processing component to gain root privileges. While no EPSS score is published and the flaw is not in CISA’s KEV catalog, the possibility of remote code execution remains high in environments where gateway management interfaces are reachable for authenticated users. Successful exploitation would give the attacker complete control over the gateway’s operations and the data passing through it.

Generated by OpenCVE AI on September 15, 2026 at 23:23 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the HPE firmware update or security patch for EdgeConnect SD‑WAN Gateways as detailed in the support article linked in the advisory (https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05135en_us&docLocale=en_US).
  • Restrict administrative access to the gateway by limiting management interfaces to known, trusted IP addresses or VPN-only connections and enforce multifactor authentication for all user accounts that can reach the gateway.
  • Monitor gateway logs for anomalous command execution attempts or suspicious login activity, and configure alerts to notify administrators of any potential exploitation attempts.

Generated by OpenCVE AI on September 15, 2026 at 23:23 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 19:45:00 +0000

Type Values Removed Values Added
Description A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways that may allow for arbitrary command execution. An authenticated remote attacker could exploit this vulnerability by providing a specially crafted input to the affected component. Successful exploitation could result in remote code execution as root.
Title Authenticated Remote Code Execution Vulnerability in HPE Networking EdgeConnect SD-WAN Gateways
References
Metrics cvssV3_1

{'score': 7.2, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: hpe

Published:

Updated: 2026-09-15T19:23:49.320Z

Reserved: 2026-08-19T16:11:34.861Z

Link: CVE-2026-76690

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-15T20:17:51.043

Modified: 2026-09-15T20:17:51.043

Link: CVE-2026-76690

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T23:30:07Z

Weaknesses

No weakness.