CVE-2025-37165: Hewlett Packard Enterprise HPE Instant On

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability in the router mode configuration of HPE Instant On Access Points exposed certain network configuration details to unintended interfaces. A malicious actor could gain knowledge of internal network configuration details through inspecting impacted packets.

Affected products

Published 2026-01-13. Last modified 2026-06-17.