{"id":"CVE-2026-76721","published":"2026-09-29T20:17:24.073","lastModified":"2026-09-29T21:39:02.570","description":"Buffer overflow vulnerability exists in the affected interface of HPE Networking Instant ON that could allow an unauthenticated remote attacker to run arbitrary code on the underlying host. Successful exploitation could allow an attacker to execute arbitrary code as a privileged user on the underlying operating system.","cvssScore":9.8,"cvssSeverity":"CRITICAL","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","cwes":[],"vendors":[],"products":[],"references":[{"url":"https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbnw05150en_us&docLocale=en_US","tags":[]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"A buffer overflow vulnerability in HPE Networking Instant ON allows unauthenticated remote attackers to execute arbitrary code as a privileged user, posing a critical risk.","exploitability":"Exploitation is highly likely with minimal preconditions; an attacker needs network access to the affected interface.","blast_radius":"Successful exploitation could lead to complete control of the underlying host and operating system, with potential for widespread damage.","remediation":"Upgrade to the latest version of HPE Networking Instant ON as soon as possible.","detection":"No reliable host or network indicator is derivable from the published description.","tags":["rce","buffer-overflow","network","unauth"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-09-30T08:47:43.295Z"}}