CVE-2025-37103: Hewlett Packard Enterprise HPE HPE Networking Instant On

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Hard-coded login credentials were found in HPE Networking Instant On Access Points, allowing anyone with knowledge of it to bypass normal device authentication. Successful exploitation could allow a remote attacker to gain administrative access to the system.

Affected products

Published 2025-07-08. Last modified 2026-06-17.