SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-76684

HIGH · CVSS 8.1 EPSS 0.46% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The API of HPE Networking EdgeConnect SD-WAN Orchestrator is vulnerable, allowing unauthenticated remote actors to bypass authentication controls. Successful exploitation could grant attackers administrative privileges, resulting in full compromise of the orchestrator host. Organizations using this SD-WAN solution should prioritize addressing this vulnerability to safeguard their network infrastructure.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-76684
Severity
HIGH
CVSS
8.1
EPSS
0.46%

Original NVD Description

Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain administrative privileges leading to complete compromise of the EdgeConnect SD-WAN Orchestrator host.