Executive brief
A vulnerability in the command line interface of HPE EdgeConnect SD-WAN Gateways could allow an authorized administrator to take full control of the underlying operating system. By exploiting this flaw, a user with high-level privileges can bypass normal restrictions to run unauthorized commands. This could lead to a complete compromise of the device, potentially impacting network traffic management and data security.
Technical details
A command injection vulnerability exists in the command line interface (CLI) of HPE EdgeConnect SD-WAN Gateway (ECOS). The flaw is located within the processing of certain CLI commands, where insufficient input validation allows for the injection of operating system commands. An attacker must be authenticated with high privileges (PR:H) to exploit this vulnerability via the network. Successful exploitation grants the attacker the ability to execute arbitrary commands on the underlying Linux-based operating system, leading to full system compromise. Affected versions include the 9.4.x and 9.5.x branches up to 9.4.4.0 and 9.5.4.0 respectively.
Affected products
- HPE EdgeConnect SD-WAN Gateway (ECOS) 9.4.0.0 through 9.4.4.0, 9.5.0.0 through 9.5.4.0
Timeline
- 2026-07-21: advisory: Initial advisory published by HPE and NVD