← Database

CVE-2026-73704

HIGH CVSS: 8.8 Published: 2026-09-01 Modified: 2026-09-02

Description

A command sanitization bypass exists in the API of HPE Networking Fabric Composer. Successful exploitation could allow an authenticated low privilege operator user to escalate their permissions to those of an administrative user, leading to complete compromise of the affected system.

Affected Platforms

Arubanetworks Fabric Composer

Weakness Type

CWE-77

References