CVE-2025-37103: Hewlett Packard Enterprise HPE HPE Networking Instant On
Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.
Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.
Affected products
- Hewlett Packard Enterprise HPE HPE Networking Instant On: from 3.2.0.0, up to and including 3.2.0.1
Published 2025-07-08. Last modified 2026-06-17.