Command Injection Vulnerability in ECOS Devices by HPE
CVE-2026-44879
7.2HIGH
What is CVE-2026-44879?
An issue in the command line interface of HPE ECOS devices permits an authenticated remote attacker with high privileges to exploit command injection vulnerabilities. Successful attacks can lead to execution of arbitrary commands on the affected operating system, posing significant security risks. Organizations using these devices should prioritize reviewing their configurations and applying necessary patches.
Affected Version(s)
EdgeConnect SD-WAN Gateway (ECOS) 9.4.0.0 <= 9.4.4.0
EdgeConnect SD-WAN Gateway (ECOS) 9.4.0.0 <= 9.4.4.0
EdgeConnect SD-WAN Gateway (ECOS) 9.5.0.0 <= 9.5.4.0
