Vulnerabilities have been identified in the API of HPE Networking Fabric Composer that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain administrative privileges leading to complete compromise of the HPE Networking Fabric Composer host.
Metrics
Affected Vendors & Products
References
History
Wed, 02 Sep 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hewlett Packard Enterprise (hpe)
Hewlett Packard Enterprise (hpe) fabric Composer |
|
| Vendors & Products |
Hewlett Packard Enterprise (hpe)
Hewlett Packard Enterprise (hpe) fabric Composer |
Wed, 02 Sep 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Arubanetworks
Arubanetworks fabric Composer |
|
| CPEs | cpe:2.3:a:arubanetworks:fabric_composer:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Arubanetworks
Arubanetworks fabric Composer |
Tue, 01 Sep 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vulnerabilities have been identified in the API of HPE Networking Fabric Composer that could potentially allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain administrative privileges leading to complete compromise of the HPE Networking Fabric Composer host. | |
| Title | Authentication Bypass in HPE Networking Fabric Composer API allows Administrative Access | |
| Weaknesses | CWE-287 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hpe
Published: 2026-09-01T19:47:53.471Z
Updated: 2026-09-01T20:24:56.443Z
Reserved: 2026-08-19T16:10:37.083Z
Link: CVE-2026-76657
Updated: 2026-09-01T20:05:21.055Z
Status : Analyzed
Published: 2026-09-01T20:17:22.990
Modified: 2026-09-02T15:14:09.307
Link: CVE-2026-76657
No data.