Hewlett Packard Enterprise (HPE) has addressed a critical vulnerability in its OneView software, identified as CVE-2025-37164, which allows attackers to execute arbitrary code remotely without authentication. This flaw…
A significant vulnerability in Baseboard Management Controllers (BMCs) has been identified, exposing over 24,000 servers to the internet. This exposure is due to CVE-2013-4786, a flaw in the IPMI 2.0 authentication…
Microsoft has reported a stealthy intrusion campaign where attackers exploited the HPE Operations Agent, a trusted enterprise tool, to infiltrate networks without using traditional malware. The attackers gained access…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified a critical vulnerability in HPE OneView, tracked as CVE-2025-37164, as being actively exploited in attacks. This flaw affects HPE's…
A critical vulnerability has been identified in the HPE AutoPass License Server (APLS) that allows remote attackers to bypass authentication. Discovered by Trend Micro's Zero-Day Initiative, the vulnerability is…
A vulnerability in HPE Telco Service Activator, reported on February 19, 2026, allows attackers to bypass access restrictions. The flaw is linked to improper input validation in the Undertow HTTP server core used by the…
Hewlett Packard Enterprise (HPE) disclosed four high-severity vulnerabilities in its Aruba Networking Instant On devices, allowing unauthorized access to sensitive network information. The vulnerabilities, identified as…
French authorities confirmed a cyber incident impacting the email services of the Interior Ministry. The breach is under active investigation, with potential risks including account takeover, internal phishing, and data…