5.4
CVE-2026-73733
- EPSS 0.19%
- Veröffentlicht 01.09.2026 19:47:12
- Zuletzt bearbeitet 03.09.2026 15:11:32
- Erkennungen
Authentication Bypasses in API allow Continued Authenticated Access in HPE Networking Fabric Composer
Authentication bypasses in the API of HPE Networking Fabric Composer could allow an authenticated low privilege operator user to circumvent existing authentication controls. Successful exploitation could allow an attacker to retain limited access to the affected system after that access should have been revoked.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Arubanetworks ≫ Fabric Composer Version <= 7.3.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.19% | 0.087 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| HPE | 5.4 | 2.8 | 2.5 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05133en_us&docLocale=en_US