Track vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.1

CVE-2026-76675: EdgeConnect SD-WAN gateways let logged-in attackers run any command

CVE-2026-76675 · published 11 days ago
Summary

The command line interface on EdgeConnect SD‑WAN gateways can be tricked by a user who has already logged in, allowing them to run any command on the device. This could let an attacker take full control of the gateway and the network it protects. Apply the latest security update from the vendor and limit who can log in to the device.

What to do

The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.

Affected software
VendorProductAffected versions
hewlett packard enterprise (hpe) edgeconnect sd-wan gateways <= 9.7.0.0
Original advisory text
Authenticated Command Injection Vulnerability Leads to Privilege Escalation in EdgeConnect SD-WAN Gateways
A command injection vulnerability exists in the command line interface of EdgeConnect SD-WAN Gateways. Successful exploitation could allow an authenticated remote attacker with high privileges to execute arbitrary commands on the underlying operating system leading to complete system compromise.
Severity
9.1 Critical
CVSS 3.1: 9.1 (MITRE)
Exploitation
EPSS 1%
Type
CWE-77Command Injection
Timeline
Published15 Sep 2026
Updated22 Sep 2026
First seen15 Sep 2026
Sources
CVE-2026-76675 · MITRE
Track software like this
Free during beta