← Terug naar overzicht

A critical vulnerability has been identified in the API of HPE Networking Fabric Composer that allows unauthenticated remote attackers to bypass existing authentication controls. Successful exploitation can grant an attacker administrative privileges, leading to complete compromise of the HPE Networking Fabric Composer host. The vulnerability requires no authentication, making it particularly dangerous as it can be exploited remotely without credentials. The impact is severe, potentially allowing full administrative control over affected systems. HPE has published a security bulletin with remediation guidance. Organizations using HPE Networking Fabric Composer should apply patches immediately given the critical nature of the authentication bypass.

Affected products

  • HPE Networking Fabric Composer

Related CVE's

  • CVE-2026-76657

Categories

  • Identity & Access
  • Network Infrastructure
  • Zero-Day Vulnerabilities