Hpe Edgeconnect Operating System — known CVE vulnerabilities
Every CVE whose affected-product data names Hpe Edgeconnect Operating System, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (38)
CVE-2026-76669 — CVSS 9.9 (critical): Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator. Successful exploitation could…
CVE-2026-76670 — CVSS 9.9 (critical): Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator. Successful exploitation could…
CVE-2026-76672 — CVSS 9.9 (critical): A vulnerability exists in the SD-WAN Orchestrator that may lead to the exposure of sensitive configuration information. An authenticated…
CVE-2026-76673 — CVSS 9.8 (critical): Vulnerabilities have been identified in the API of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote…
CVE-2026-76674 — CVSS 9.8 (critical): Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an…
CVE-2026-76675 — CVSS 9.1 (critical): A command injection vulnerability exists in the command line interface of EdgeConnect SD-WAN Gateways. Successful exploitation could allow…
CVE-2026-76676 — CVSS 8.8 (high): Buffer overflow vulnerabilities exist in the underlying operating system of EdgeConnect SD-WAN Gateways that could allow an unauthenticated…
CVE-2026-76677 — CVSS 8.8 (high): A privilege escalation vulnerability exists in the API of EdgeConnect SD-WAN Gateways. Successful exploitation could allow a remote…
CVE-2026-76678 — CVSS 8.8 (high): A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow a low-privilege authenticated remote attacker…
CVE-2026-76679 — CVSS 8.6 (high): Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct denial-of-service…
CVE-2026-76680 — CVSS 8.5 (high): Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct…
CVE-2026-76681 — CVSS 8.5 (high): A vulnerability in the API of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker with low privileges to access…
CVE-2026-76682 — CVSS 8.2 (high): A vulnerability in the network security monitoring component of intrusion detection systems could allow an unauthenticated remote attacker…
CVE-2026-76683 — CVSS 8.1 (high): Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated…
CVE-2026-76684 — CVSS 8.1 (high): Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an…
CVE-2026-76685 — CVSS 8.1 (high): A vulnerability exists in the proxy packet processing logic of the affected component where it improperly processes malformed or truncated…
CVE-2026-76686 — CVSS 7.5 (high): A vulnerability exists in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could…
CVE-2026-76687 — CVSS 7.5 (high): A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow a low-privilege authenticated remote…
CVE-2026-76688 — CVSS 7.5 (high): Vulnerabilities have been identified in the web-based management interface of EdgeConnect SD-WAN Orchestrator that could potentially allow…
CVE-2026-76689 — CVSS 7.2 (high): A vulnerability exists in the configuration processing logic of the affected component where malformed input is improperly processed. An…
CVE-2026-76690 — CVSS 7.2 (high): A vulnerability exists in a component of the HPE Networking EdgeConnect SD-WAN Gateways that may allow for arbitrary command execution. An…
CVE-2026-76691 — CVSS 7.2 (high): Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could…
CVE-2026-76692 — CVSS 7.1 (high): A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to obtain limited…
CVE-2026-76693 — CVSS 7.0 (high): A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service…
CVE-2026-76694 — CVSS 6.6 (medium): A privilege escalation vulnerability exists in the command line interface of HPE Networking EdgeConnect SD-WAN Gateways. Successful…
CVE-2026-76695 — CVSS 6.5 (medium): Buffer overflow vulnerabilities exist in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways that could allow an…
CVE-2026-76696 — CVSS 6.5 (medium): A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct a denial of…
CVE-2026-76697 — CVSS 6.5 (medium): A vulnerability in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways could allow a remote attacker…
CVE-2026-76698 — CVSS 6.5 (medium): A command injection vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways. An…
CVE-2026-76699 — CVSS 6.4 (medium): A buffer overflow vulnerability exists in a system service within the underlying operating system of HPE Networking EdgeConnect SD-WAN…
CVE-2026-76700 — CVSS 5.9 (medium): Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to cause a denial-of-service…
CVE-2026-76701 — CVSS 5.9 (medium): A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated remote attacker to access…
CVE-2026-76702 — CVSS 5.8 (medium): A vulnerability in the operating system of HPE Networking EdgeConnect SD-WAN Gateways could allow an authenticated local attacker to cause…
CVE-2026-76703 — CVSS 5.5 (medium): A buffer overflow vulnerability exists in the web-based management interface of HPE Networking EdgeConnect SD-WAN Gateways that could allow…
CVE-2026-76704 — CVSS 5.5 (medium): A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker…
CVE-2026-76705 — CVSS 5.5 (medium): A buffer overflow vulnerability exists in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways. Successful exploitation could…
CVE-2026-76706 — CVSS 5.3 (medium): A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to…
CVE-2026-76707 — CVSS 4.3 (medium): A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory…