CVE-2025-37101: Hewlett Packard Enterprise HPE OneView For VMware vCenter

High severity, CVSS 8.7. EPSS: 0.3% chance of exploitation in the next 30 days.

A potential security vulnerability has been identified in HPE OneView for VMware vCenter (OV4VC). This vulnerability could be exploited allowing an attacker with read only privilege to cause Vertical Privilege Escalation (operator can perform admin actions).

Affected products

Published 2025-06-26. Last modified 2026-06-17.