CVE-2026-76689EPSS p56.8%
CVE-2026-76689CVE-2026-76689
arubanetworks / edgeconnect_sd-wan_orchestrator
Description
A vulnerability exists in the configuration processing logic of the affected component where malformed input is improperly processed. An authenticated remote attacker with administrative privileges could exploit this vulnerability by providing specially crafted configuration data. Successful exploitation could result in a stack-based buffer overflow, potentially leading to remote code execution with root privileges or a denial of service due to a system crash.
Scoring
| CVSS | 7.2 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.85% probability of exploitation · percentile 56.8% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-28 |