Back Feeds2.Feedburner Recently fixed HPE OneView flaw is being exploited (CVE-2025-37164)
An unauthenticated remote code execution vulnerability (CVE-2025-37164) affecting certain versions of HPE OneView is being leveraged by attackers, CISA confirmed by adding the flaw to its Known Exploited Vulnerabilities catalog. The vulnerability’s inclusion in the catalog is unsurprising, as technical details and a Metasploit module were made public soon after it was disclosed, making exploitation by less-skilled attackers easier. HPE OneView and CVE-2025-37164 HPE OneView is a centralized infrastructure management platform used to deploy, … More →
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
