Junglewise Threat Intelligence

CVE-2026-76676: Silverpeak EdgeConnect SD-WAN Gateway buffer overflow in underlying OS

CVE-2026-76676 · Severity: high · CVSS 8.8 · Published 2026-09-15

Executive brief

EdgeConnect SD-WAN Gateways are network appliances used to optimize and secure branch office connectivity. A buffer overflow vulnerability in the underlying operating system could allow an attacker on the same network segment to execute arbitrary code with system-level privileges, resulting in complete compromise of the gateway and potentially the entire branch network.

Technical details

Buffer overflow vulnerabilities exist in the underlying operating system of EdgeConnect SD-WAN Gateways. The vulnerability is exploitable by an unauthenticated adjacent network attacker under certain preconditions outside the attacker's control. Successful exploitation allows arbitrary code execution with privileged user rights on the underlying OS, leading to complete system compromise. The attack requires network adjacency but not authentication. Patch availability should be confirmed with HPE/Silverpeak support.

Affected products

  • Silverpeak EdgeConnect SD-WAN Gateway <UNKNOWN>

Timeline

  • 2026-09-15: disclosed

References