CVE-2026-73743: Unauthenticated Information Disclosure Leading to Data Exposure in HPE Networking Fabric Composer
Published Sep 1, 2026
·Updated
A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow an unauthenticated remote attacker to gain insight into some data handled by the affected interface. A successful exploit could allow an attacker to gain access to some data in a cleartext format possibly exposing other network infrastructure to further compromise.
Affected Software
1 affected component
HPE Networking Fabric Composer
Event History
Sep 1, 2026
CVE Published
via MITRE·07:47 PM
Data Sourced
via MITRE·07:47 PM
DescriptionSeverity
Frequently Asked Questions
1
Who can attempt to exploit this issue?
An unauthenticated remote attacker can attempt to exploit the web-based management interface. No account or user interaction is required, but the attack complexity is rated high.
2
What is the potential impact if exploitation succeeds?
An attacker could obtain some data handled by the management interface in cleartext. The disclosed information could potentially expose other network infrastructure to further compromise.