SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-76704

MEDIUM · CVSS 5.5 EPSS 0.25% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator allows authenticated remote attackers to execute arbitrary script code in a victim's browser. This could lead to unauthorized access to sensitive information, compromising the confidentiality and integrity of the data processed by the application. Organizations using this SD-WAN solution should prioritize remediation to mitigate potential risks associated with this vulnerability.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-76704
Severity
MEDIUM
CVSS
5.5
EPSS
0.25%

Original NVD Description

A vulnerability in the web-based management interface of the EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to execute arbitrary script code in a victim's browser in the context of the affected interface. Successful exploitation could allow an attacker to access sensitive information, potentially affecting the confidentiality and integrity of the data processed by the application.