{"id":"CVE-2026-76707","title":"A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents","summary":"A vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an attacker to gain insight into internal services an…","severity":"medium","cvss":4.3,"cvssVector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N","cwe":["CWE-200"],"vendor":"Hewlett Packard Enterprise (HPE)","product":"EdgeConnect SD-WAN Gateways","affected":["edgeconnect_sd-wan_gateways >= 9.7.0.0 <= 9.7.0.0","edgeconnect_sd-wan_gateways >= 9.6.0.0 <= 9.6.3.1","edgeconnect_sd-wan_gateways >= 9.5.0.0 <= 9.5.8.1","edgeconnect_sd-wan_gateways >= 9.4.0.0 <= 9.4.8.2"],"published":"2026-09-15","updated":"2026-09-16","sourceUpdated":"2026-09-16T19:21:55.793","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-76707","references":[{"url":"https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05135en_us&docLocale=en_US","label":"security-alert@hpe.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-15T19:43:27.895014Z"},"ingestedAt":"2026-09-15T19:42:58.819Z","epss":0.00166,"epssPercentile":0.06236,"slug":"CVE-2026-76707","body":"## Overview\n\nA vulnerability in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to view some system memory contents. Successful exploitation could allow an attacker to gain insight into internal services and workflows, increasing the risk of unauthorized access and elevated privileges when combined with other vulnerabilities.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":24,"depthScoreParts":{"impact":23.7,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}