Executive brief
HPE Networking EdgeConnect is an SD-WAN gateway appliance used to optimize and secure branch office network traffic. A vulnerability in its underlying operating system allows an unauthenticated remote attacker to crash the device or disrupt its services, potentially causing network outages at affected branch locations.
Technical details
The vulnerability exists in the underlying operating system of HPE Networking EdgeConnect SD-WAN Gateways and can be exploited to conduct a denial-of-service attack. An unauthenticated remote attacker can trigger the flaw over the network without requiring authentication or user interaction. Successful exploitation disrupts the availability of the affected service on the gateway. A patch or mitigation guidance is expected from HPE; check the vendor's security advisory for remediation options.
Affected products
- HPE Networking EdgeConnect SD-WAN Gateway
Timeline
- 2026-09-15: disclosed