← back
CVE-2026-19766criticalCWE-287

Authentication Bypass leads to Administrative control of adjacent network hosts in HPE Networking Fabric Composer

28Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 9.6epss 0.3%
exploitation probability
0.3%top 83% of all CVEs
observed exploitation
nono source reports it
An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric Composer. Successful exploitation could allow an unauthenticated adjacent attacker to execute arbitrary code as a privileged user on the underlying operating system, leading to complete compromise of the AFC host.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H