CVE-2025-37165: Hewlett Packard Enterprise HPE Instant On
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A vulnerability in the router mode configuration of HPE Instant On Access Points exposed certain network configuration details to unintended interfaces. A malicious actor could gain knowledge of internal network configuration details through inspecting impacted packets.
Affected products
- Hewlett Packard Enterprise HPE Instant On: from 3.0.0.0, up to and including 3.3.1.0
Published 2026-01-13. Last modified 2026-06-17.