CVE-2025-37099: HPE Insight Remote Support

Critical severity, CVSS 9.8. EPSS: 0.8% chance of exploitation in the next 30 days.

A remote code execution vulnerability exists in HPE Insight Remote Support (IRS) prior to v7.15.0.646.

Affected products

  • HPE Insight Remote Support: before 7.15.0.646 (fixed in 7.15.0.646)

Published 2025-07-01. Last modified 2026-06-17.