Description
A format string vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to cause memory corruption with a modified input. Successful exploitation could allow an attacker to provoke a denial-of-service condition or remote code execution in the affected system function.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Tue, 29 Sep 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A format string vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to cause memory corruption with a modified input. Successful exploitation could allow an attacker to provoke a denial-of-service condition or remote code execution in the affected system function. | |
| Title | Authenticated Format String Vulnerability allows Memory Corruption in HPE Networking Instant ON API Endpoint | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: hpe
Published:
Updated: 2026-09-29T19:28:45.157Z
Reserved: 2026-08-19T16:13:18.140Z
Link: CVE-2026-76729
No data.
Status : Awaiting Analysis
Published: 2026-09-29T20:17:25.073
Modified: 2026-09-29T21:39:02.570
Link: CVE-2026-76729
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.