A vulnerability in the API of HPE Networking Fabric Composer could allow an unauthenticated remote attacker to obtain limited system information and to change the state of certain settings of a vulnerable system. Successful exploitation could allow an attacker to gain insight into internal services and workflows and to make unauthorized changes that may disrupt the normal operation of the affected service.
References
| Link | Resource |
|---|---|
| https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05133en_us&docLocale=en_US | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-09-01 20:17
Updated : 2026-09-02 16:17
NVD link : CVE-2026-73706
Mitre link : CVE-2026-73706
CVE.ORG link : CVE-2026-73706
JSON object : View
Products Affected
arubanetworks
- fabric_composer
CWE
CWE-306
Missing Authentication for Critical Function
