CVE-2026-44879: Hewlett Packard Enterprise HPE Edgeconnect SD-WAN Gateway Ecos
High severity, CVSS 7.2. EPSS: 1.5% chance of exploitation in the next 30 days.
A vulnerability in the command line interface of ECOS devices could allow a highly privileged, authenticated remote attacker to perform command injection on certain CLI commands. Successful exploitation could allow an attacker to execute arbitrary commands on the underlying operating system.
Affected products
- Hewlett Packard Enterprise HPE Edgeconnect SD-WAN Gateway Ecos: from 9.4.0.0, up to and including 9.4.4.0; from 9.5.0.0, up to and including 9.5.4.0
Published 2026-07-21. Last modified 2026-07-23.