PT-2026-92445 · Hewlett Packard+1 · Edgeconnect Sd-Wan Gateways+2

CVE-2026-76685

·

Published

2026-09-15

·

Updated

2026-09-28

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions The product name cannot be determined (affected versions not specified)
Description A flaw in the proxy packet processing logic occurs when malformed or truncated input is improperly handled. An unauthenticated remote attacker can trigger an integer overflow by providing specially crafted input. This may lead to a buffer overflow, potentially resulting in remote code execution or a denial-of-service condition. An integer overflow occurs when an arithmetic operation attempts to create a numeric value that exceeds the maximum size of the integer type used to store it.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-76685

Affected Products

Edgeconnect Sd-Wan Gateways
Edgeconnect Operating System
Edgeconnect Sd-Wan Orchestrator