SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-76673

CRITICAL · CVSS 9.8 EPSS 0.45% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

The API of EdgeConnect SD-WAN Orchestrator is vulnerable, allowing unauthenticated remote actors to bypass authentication controls. Successful exploitation can grant attackers administrative privileges, resulting in full compromise of the orchestrator host. Organizations using EdgeConnect SD-WAN should prioritize addressing this critical vulnerability to safeguard their network infrastructure.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-76673
Severity
CRITICAL
CVSS
9.8
EPSS
0.45%

Original NVD Description

Vulnerabilities have been identified in the API of EdgeConnect SD-WAN Orchestrator that could potentially allow an unauthenticated remote actor to circumvent existing authentication controls. Successful exploitation could allow an attacker to gain administrative privileges leading to complete compromise of the EdgeConnect SD-WAN Orchestrator host.