VulnSea

edgeconnect_sd-wan_orchestrator vulnerabilities

CVEs whose affected-version data names the edgeconnect_sd-wan_orchestrator package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

11 CVEsRSS

CVE-2026-76673Critical· 9.8
1w ago

Vulnerabilities have been identified in the API of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls

Vulnerabilities have been identified in the API of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could allow an attack…

▾ Midnightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.61%via NVD
CVE-2026-76670Critical· 9.9
1w ago

Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator

Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator. Successful exploitation could allow a remote low-privileged authenticated user to escalate their privileges to those of an administr…

▾ Midnightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.50%via NVD
CVE-2026-76672Critical· 9.9
1w ago

A vulnerability exists in the SD-WAN Orchestrator that may lead to the exposure of sensitive configuration information

A vulnerability exists in the SD-WAN Orchestrator that may lead to the exposure of sensitive configuration information. An authenticated remote attacker with read-only privileges could exploit this vulnerability by sending a specially cr…

▾ Midnightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.52%via NVD
CVE-2026-76681High· 8.5
1w ago

A vulnerability in the API of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker with low privileges to access sensitive information beyond what is authorized by the user's existing privilege level

A vulnerability in the API of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker with low privileges to access sensitive information beyond what is authorized by the user's existing privilege level. Successful e…

▾ Twilightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.35%via NVD
CVE-2026-76680High· 8.5
1w ago

Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks

Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks. A successful exploit allows an attacker to enumerate inf…

▾ Twilightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.36%via NVD
CVE-2026-76684High· 8.1
1w ago

Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls

Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could …

▾ Twilightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.46%via NVD
CVE-2026-76687High· 7.5
1w ago

A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow a low-privilege authenticated remote attacker to escalate privileges

A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow a low-privilege authenticated remote attacker to escalate privileges. Successful exploitation of this vulnerability may enable the attacker…

▾ Twilightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.47%via NVD
CVE-2026-76688High· 7.5
1w ago

Vulnerabilities have been identified in the web-based management interface of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls

Vulnerabilities have been identified in the web-based management interface of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploit…

▾ Twilightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.38%via NVD
CVE-2026-76706Medium· 5.3
1w ago

A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to obtain sensitive information

A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Orchestrator could allow an unauthenticated remote attacker to obtain sensitive information. Successful exploitation could result in the disclosure of security-rele…

▾ Sunlitarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.42%via NVD
CVE-2026-76704Medium· 5.5
1w ago

A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a victim's browser in the context of the affected interface

A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a victim's browser in the context of the affected interface. Su…

▾ Sunlitarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.33%via NVD
CVE-2026-76669Critical· 9.9
1w ago

Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator

Privilege escalation vulnerabilities exist in the API of HPE Networking EdgeConnect SD-WAN Orchestrator. Successful exploitation could allow a remote low-privileged authenticated user to escalate their privileges to those of an administr…

▾ Midnightarubanetworks · edgeconnect_sd-wan_orchestratorEPSS 0.50%via NVD
edgeconnect_sd-wan_orchestrator vulnerabilities (CVEs) · VulnSea