CVE-2026-73728: Authenticated Denial of Service Vulnerabilities in HPE Networking Fabric Composer API
Published Sep 1, 2026
·Updated
Denial-of-service vulnerabilities exist in the API of HPE Networking Fabric Composer that could allow an authenticated low privilege operator user to cause a denial of service. Successful exploitation could allow an attacker to interrupt the normal operation of the affected service.
Affected Software
1 affected component
HPE Networking Fabric Composer API
Event History
Sep 1, 2026
CVE Published
via MITRE·07:47 PM
Data Sourced
via MITRE·07:47 PM
DescriptionSeverity
Frequently Asked Questions
1
What level of access does an attacker need to exploit this issue?
An attacker needs an authenticated low-privilege operator account. No user interaction is required.
2
What is the expected impact of successful exploitation?
Successful exploitation can deny service by interrupting normal operation of the affected HPE Networking Fabric Composer API service. The provided information indicates availability impact only; no confidentiality or integrity impact is specified.
3
Can this be exploited remotely?
Yes. The attack vector is network-based, so an authenticated attacker able to reach the API could attempt exploitation.