cbcvebase.
CVE-2026-76707
published 2026-09-15

CVE-2026-76707: A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful…

PriorityP424medium4.3CVSS 3.1
AVAACLPRNUINSUCLINAN
EPSS
0.23%
12.8th percentile
A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an attacker to gain insight into internal services and workflows, increasing the risk of unauthorized access and elevated privileges when combined with other vulnerabilities.

Affected

12 ranges
VendorProductVersion rangeFixed in
arubanetworksedgeconnect_sd-wan_orchestrator——
arubanetworksedgeconnect_sd-wan_orchestrator>= 9.4.0 < 9.4.119.4.11
arubanetworksedgeconnect_sd-wan_orchestrator>= 9.5.0 < 9.5.99.5.9
arubanetworksedgeconnect_sd-wan_orchestrator>= 9.6.0 < 9.6.49.6.4
hewlett_packard_enterpriseedgeconnect_sd-wan_gateways9.4.0.0 – 9.4.8.2—
hewlett_packard_enterpriseedgeconnect_sd-wan_gateways9.5.0.0 – 9.5.8.1—
hewlett_packard_enterpriseedgeconnect_sd-wan_gateways9.6.0.0 – 9.6.3.1—
hewlett_packard_enterpriseedgeconnect_sd-wan_gateways9.7.0.0 – 9.7.0.0—
hpeedgeconnect_operating_system——
hpeedgeconnect_operating_system>= 9.4.0.0 < 9.4.9.09.4.9.0
hpeedgeconnect_operating_system>= 9.5.0.0 < 9.5.9.09.5.9.0
hpeedgeconnect_operating_system>= 9.6.0.0 < 9.6.4.09.6.4.0
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.