Junglewise Threat Intelligence

CVE-2026-76675: Hewlett Packard Enterprise EdgeConnect command injection in CLI

CVE-2026-76675 · Severity: critical · CVSS 9.1 · Published 2026-09-15

Executive brief

EdgeConnect SD-WAN Gateways are network appliances used to optimize and manage wide-area network traffic across distributed enterprise locations. An authenticated attacker with administrative privileges can inject arbitrary commands through the command-line interface, leading to complete compromise of the underlying system and potential lateral movement across the organization's network infrastructure.

Technical details

A command injection vulnerability exists in the command-line interface of EdgeConnect SD-WAN Gateways, allowing an authenticated remote attacker with high privileges to execute arbitrary shell commands on the underlying operating system. The vulnerability stems from insufficient input validation or sanitization of CLI commands before passing them to the system shell. Exploitation requires authentication and administrative privileges, but successful exploitation results in unauthenticated code execution at the OS level, enabling complete system compromise. A patch or vendor guidance should be consulted for remediation.

Affected products

  • Hewlett Packard Enterprise EdgeConnect SD-WAN Gateways

Timeline

  • 2026-09-15: disclosed

References