CVE-2026-73747: Local Privilege Escalation Vulnerability in HPE Networking Fabric Composer
Published Sep 1, 2026
·Updated
A local privilege-escalation vulnerability has been discovered in HPE Networking Fabric Composer. Successful exploitation could allow an authenticated low privilege operator user with local access to elevate their user privileges and make limited modifications on the affected system.
Affected Software
2 affected components
HPE Networking Fabric Composer
Arubanetworks Fabric Composer<7.3.4
Event History
Sep 1, 2026
CVE Published
via MITRE·07:47 PM
Data Sourced
via MITRE·07:47 PM
DescriptionSeverity
Data Sourced
via NVD·08:17 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
Can this be exploited remotely?
No. The attack vector is local, so an attacker needs local access to the affected system.
2
What level of access does an attacker need before exploitation?
The attacker must already be authenticated as a low-privilege operator user.
3
What is the expected impact after successful exploitation?
Successful exploitation can elevate the operator user's privileges and allow limited modifications on the affected system. The provided impact information indicates no confidentiality or availability impact.