Hewlett Packard Enterprise has released security updates for HPE Networking Analytics and Location Engine, or ALE, after finding multiple flaws that could let attackers bypass security controls, access sensitive data, and take over vulnerable systems. The issues affect ALE version 5.0.0.0 and earlier. HPE fixed the vulnerabilities in ALE 5.1.0.0 and urges customers to upgrade as soon as possible. The advisory, tracked as HPESBNW05137 rev.1, was released on September 22, 2026. The most serious flaws are CVE-2026-76708 and CVE-2026-76709, both rated critical with a CVSS score of 9.8. They can be exploited remotely without authentication or user interaction, making them especially dangerous for exposed or poorly segmented ALE...
Read the full article at the source.
Comments (0)
No comments yet. Be the first to comment!