{"id":478,"date":"2024-05-13T21:15:20","date_gmt":"2024-05-13T19:15:20","guid":{"rendered":"https:\/\/cyberszary.pl\/?page_id=478"},"modified":"2024-05-13T23:46:24","modified_gmt":"2024-05-13T21:46:24","slug":"cve","status":"publish","type":"page","link":"https:\/\/cyberszary.pl\/index.php\/cve\/","title":{"rendered":"CVE"},"content":{"rendered":"\n<figure class=\"wp-block-image aligncenter size-full is-resized\"><img decoding=\"async\" width=\"270\" height=\"135\" src=\"http:\/\/cyberszary.pl\/wp-content\/uploads\/2024\/05\/OIG1-e1715636484189.jpeg\" alt=\"\" class=\"wp-image-509\" style=\"width:441px;height:auto\"\/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading has-ast-global-color-4-background-color has-background\"><strong>Najnowsze numery CVE krytycznych podatno\u015bci :<\/strong><\/h2>\n\n\n<ul class=\"has-dates has-authors has-excerpts aligncenter wp-block-rss\"><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-73458'>CVE-2026-73458 &#8211; On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configured, a specially crafted packet can cause the BFD session(s) to go down. This may result in undesirable network changes because various rou<\/a><\/div><time datetime=\"2026-09-15T21:30:16+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-73458 Published : 15 wrze\u015bnia 2026 19:30 | 43\u00a0minuty ago Description :On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configured, a specially crafted packet can cause the BFD session(s) to go down. This may result in undesirable network changes because various routing protocols monitor status on BFD session(s). Severity: 9.2 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76685'>CVE-2026-76685 &#8211; Unauthenticated Buffer Overflow Vulnerability leads to Remote Code Execution or Denial-of-Service in HPE Networking EdgeConnect SD-WAN Gateways<\/a><\/div><time datetime=\"2026-09-15T21:23:44+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76685 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :A vulnerability exists in the proxy packet processing logic of the affected component where it improperly processes malformed or truncated input. An unauthenticated remote attacker could exploit this vulnerability by providing specially crafted input that triggers an integer overflow. Successful exploitation could result in a buffer overflow, potentially leading to remote code execution or denial-of-service. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76683'>CVE-2026-76683 &#8211; Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in HPE Networking EdgeConnect SD-WAN Gateways<\/a><\/div><time datetime=\"2026-09-15T21:23:43+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76683 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :Buffer overflow vulnerabilities exist in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways that could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host if certain preconditions outside of the attacker&#039;s control are met. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system leading to complete system compromise. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76684'>CVE-2026-76684 &#8211; Authentication Bypass Vulnerabilities in HPE Networking EdgeConnect SD-WAN Orchestrator API<\/a><\/div><time datetime=\"2026-09-15T21:23:43+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76684 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :Vulnerabilities have been identified in the API of HPE Networking EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain administrative privileges leading to complete compromise of the EdgeConnect SD-WAN Orchestrator host. Severity: 8.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76682'>CVE-2026-76682 &#8211; Unauthenticated Denial-of-Service Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways<\/a><\/div><time datetime=\"2026-09-15T21:23:42+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76682 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :A vulnerability in the network security monitoring component of intrusion detection systems could allow an unauthenticated remote attacker to exploit a limited buffer overflow. Successful exploitation could allow an attacker to cause a denial-of-service or potentially execute arbitrary code on the system. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76681'>CVE-2026-76681 &#8211; Authenticated Information Disclosure Vulnerability in HPE Networking EdgeConnect SD-WAN Orchestrator API<\/a><\/div><time datetime=\"2026-09-15T21:23:41+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76681 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :A vulnerability in the API of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker with low privileges to access sensitive information beyond what is authorized by the user&#039;s existing privilege level. Successful exploitation could allow an attacker to retrieve information which could be used to potentially gain further access to network services supported by EdgeConnect SD-WAN Orchestrator. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76680'>CVE-2026-76680 &#8211; Authenticated Server-Side Request Forgery Vulnerabilities Leading to Information Disclosure in EdgeConnect SD-WAN Orchestrator<\/a><\/div><time datetime=\"2026-09-15T21:23:40+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76680 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :Vulnerabilities in the API of EdgeConnect SD-WAN Orchestrator could allow a remote attacker authenticated with low privileges to conduct server-side request forgery (SSRF) attacks. A successful exploit allows an attacker to enumerate information about the internal structure of the EdgeConnect SD-WAN Orchestrator host leading to potential disclosure of sensitive information beyond what is authorized by the user&#039;s existing privilege level. Severity: 8.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76679'>CVE-2026-76679 &#8211; Unauthenticated Denial-of-Service Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways<\/a><\/div><time datetime=\"2026-09-15T21:23:39+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76679 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :Vulnerabilities in HPE Networking EdgeConnect SD-WAN Gateways could allow an unauthenticated adjacent attacker to conduct denial-of-service attacks. Successful exploitation could allow an attacker to crash the system, preventing it from rebooting without manual intervention and disrupting network operations. Severity: 8.6 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76678'>CVE-2026-76678 &#8211; Authenticated Command Injection Vulnerability leads to Remote Code Execution in EdgeConnect SD-WAN Gateways<\/a><\/div><time datetime=\"2026-09-15T21:23:38+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76678 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :A vulnerability in the API endpoint of HPE Networking EdgeConnect SD-WAN Gateways could allow a low-privilege authenticated remote attacker to escalate privileges. Successful exploitation of this vulnerability may enable the attacker to execute arbitrary system commands with root privileges on the underlying operating system. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><li class='wp-block-rss__item'><div class='wp-block-rss__item-title'><a href='https:\/\/cvefeed.io\/vuln\/detail\/CVE-2026-76676'>CVE-2026-76676 &#8211; Unauthenticated Buffer Overflow Vulnerabilities lead to Remote Code Execution in EdgeConnect SD-WAN Gateways<\/a><\/div><time datetime=\"2026-09-15T21:23:37+02:00\" class=\"wp-block-rss__item-publish-date\">2026-09-15<\/time> <div class=\"wp-block-rss__item-excerpt\">CVE ID :CVE-2026-76676 Published : 15 wrze\u015bnia 2026 19:23 | 50\u00a0minut ago Description :Buffer overflow vulnerabilities exist in the underlying operating system of EdgeConnect SD-WAN Gateways that could allow an unauthenticated adjacent attacker to execute arbitrary code if certain preconditions outside of the attacker&#039;s control are met. Successful exploitation could allow an attacker to execute arbitrary code as a privileged user on the underlying operating system leading to complete system compromise. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more&#8230;<\/div><\/li><\/ul>\n\n\n<h2 class=\"wp-block-heading has-ast-global-color-4-background-color has-background\"><\/h2>\n","protected":false},"excerpt":{"rendered":"<p>Najnowsze numery CVE krytycznych podatno\u015bci :<\/p>\n","protected":false},"author":2,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"elementor_theme","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"disabled","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"class_list":["post-478","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/pages\/478","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/comments?post=478"}],"version-history":[{"count":5,"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/pages\/478\/revisions"}],"predecessor-version":[{"id":510,"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/pages\/478\/revisions\/510"}],"wp:attachment":[{"href":"https:\/\/cyberszary.pl\/index.php\/wp-json\/wp\/v2\/media?parent=478"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}