CVE-2026-76709: Arubanetworks Analytics And Location Engine
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
A vulnerability exists in the internal administrative component of Analytics and Location Engine (ALE). Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to gain unauthorized write access to the file system with elevated privileges, potentially resulting in full system compromise.
Affected products
- Arubanetworks Analytics And Location Engine: before 5.1.0.0 (fixed in 5.1.0.0)
Published 2026-09-22. Last modified 2026-09-28.