CVE-2025-37102: Hewlett Packard Enterprise HPE HPE Networking Instant On
High severity, CVSS 7.2. EPSS: 1.5% chance of exploitation in the next 30 days.
An authenticated command injection vulnerability exists in the Command line interface of HPE Networking Instant On Access Points. A successful exploitation could allow a remote attacker with elevated privileges to execute arbitrary commands on the underlying operating system as a highly privileged user.
Affected products
- Hewlett Packard Enterprise HPE HPE Networking Instant On: from 3.2.0.0, up to and including 3.2.0.1
Published 2025-07-08. Last modified 2026-06-17.