Back

HIGH

Authenticated Arbitrary File Write leads to Remote Code Execution in HPE Networking Fabric Composer

Published Sep 1, 2026

Description

An arbitrary file write vulnerability in the API of HPE Networking Fabric Composer could allow an authenticated low privilege operator user to escalate privileges. Successful exploitation of this vulnerability may enable the attacker to execute arbitrary commands on the underlying operating system, leading to complete compromise of the affected system.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner hpe
Published Sep 1, 2026
Updated Sep 2, 2026
Reserved Aug 13, 2026
CISA Vulnrichment
Updated Sep 2, 2026
NVD
Status Modified
Modified Sep 2, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner hpe
Published Sep 1, 2026
Updated Sep 2, 2026
Exploited since n/a
EUVD-2026-69432