CVE-2026-73748CWE-312

CVE-2026-73748

Low · published September 2, 2026

CVSS v3.1
2.2
EPSS
0%
Percentile
1.3
In the wild
Unconfirmed
What it is

A vulnerability in the affected interface of HPE Networking Fabric Composer allows an attacker with administrative privileges to access sensitive information in a cleartext format. A successful exploit allows an attacker to retrieve information which could be used to potentially gain further access to network services supported by HPE Networking Fabric Composer.

The record
Technical detail
CVSS v3.1
2.2 · LOW
Vector
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:N/A:N
CVSS v4.0
Not supplied
EPSS
0.00109 · 1.3th percentile
Weakness
CWE-312 · Cleartext Storage of Sensitive Information
Published
2026-09-02T00:17Z
Affected products (1)
ProductVersionsFixed in
arubanetworks/fabric_composer< 7.3.47.3.4
References (1)
EPSS history
Timeline
  • 03 SEP 03:32Z
    EPSS moved — → 0%
    epss
  • 01 SEP 19:47Z
    Authenticated Sensitive Information Disclosure in HPE Networking Fabric Composer
    cvelistv5