Memory Disclosure and DoS Risk in HPE Networking EdgeConnect SD-WAN Gateways
CVE-2026-76692
7.1HIGH
What is CVE-2026-76692?
A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways enables unauthenticated adjacent attackers to exploit the system, potentially leading to the disclosure of sensitive information from memory and disruption of the service's normal operations. This can allow attackers to induce a denial of service, which may manifest as a system crash, or to reveal uninitialized stack memory that could be manipulated for further exploits.
Affected Version(s)
EdgeConnect SD-WAN Gateways 9.7.0.0
EdgeConnect SD-WAN Gateways 9.7.0.0
EdgeConnect SD-WAN Gateways 9.6.0.0 <= 9.6.3.1
References
CVSS V3.1
Score:
7.1
Severity:
HIGH
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Internal security research (HPE Networking).
