CVE-2026-73732: Local Authenticated Sensitive Information Disclosure in HPE Networking Fabric Composer
A vulnerability in the underlying operating system of HPE Networking Fabric Composer could allow an authenticated low privilege operator user with local access to obtain sensitive information. Successful exploitation could allow an attacker to retrieve sensitive data which could be used to gain further unauthorized access to the affected system and to other systems it interacts with.
Affected Software
Event History
Frequently Asked Questions
Who can exploit this issue?
An authenticated low-privilege operator user must have local access to an affected HPE Networking Fabric Composer system. The attack complexity is rated high, so exploitation requires more than ordinary access alone.
What is the likely impact if exploitation succeeds?
An attacker could retrieve sensitive information from the affected system. That information could be used to obtain further unauthorized access to Fabric Composer or to other systems it interacts with.
Does this issue affect unauthenticated remote attackers?
No. The provided vector identifies local attack access, low privileges required, and no user interaction requirement; it does not describe unauthenticated or remote exploitation.