{"id":"CVE-2026-76715","published":"2026-09-22T20:17:07.480","lastModified":"2026-09-28T14:07:40.667","description":"A vulnerability in an administrative component of Analytics and Location Engine (ALE) is vulnerable to a man-in-the-middle (MitM) attack. Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to execute arbitrary code with root privileges on the affected appliance.","cvssScore":7.1,"cvssSeverity":"HIGH","cvssVector":"CVSS:3.1/AV:A/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H","cwes":["CWE-300"],"vendors":["arubanetworks"],"products":["analytics and location engine"],"references":[{"url":"https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05137en_us&docLocale=en_US","tags":["Vendor Advisory"]}],"exploitRefs":[],"hasPoc":false,"ai":null}