Hewlett Packard EnterpriseCVE-2026-73726
Hewlett Packard Enterprise Fabric Composer: missing authentication
Medium6.8CVE-2026-73726 · Published Sep 1, 2026 · updated Sep 2, 2026
A vulnerability has been identified in the underlying operating system of HPE Networking Fabric Composer that could potentially allow an unauthenticated adjacent actor to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain administrative access, modify system configurations, and access or manipulate sensitive data.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| Fabric Composer Product | >= 7.0.0, <= 7.3.3 | No fix yet |
Details and references
More Hewlett Packard Enterprise advisories
All Hewlett Packard Enterprise| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 1 | Hewlett Packard Enterprise AOS-CX: remote code execution | High8.8 | No fix yet |
| Sep 1 | Hewlett Packard Enterprise AOS-CX: denial of service | Medium4.9 | No fix yet |
| Sep 1 | Hewlett Packard Enterprise AOS-CX: denial of service | High7.5 | No fix yet |
| Sep 1 | Hewlett Packard Enterprise AOS-CX: buffer overflow | High7.6 | No fix yet |
| Sep 1 | Hewlett Packard Enterprise AOS-CX: information disclosure | High7.7 | No fix yet |
| Sep 1 | Hewlett Packard Enterprise AOS-CX: code execution | High7.9 | No fix yet |