← Back

Hpe

hpe

183 CVEs • 557 products

Products (557)

Click to collapse
Toggle
Arubaos Cx
arubaos-cx
Hpux Ntp
hpux-ntp
Nimbleos
nimbleos
Hf20 Firmware
hf20_firmware
Hf40 Firmware
hf40_firmware
Hf60 Firmware
hf60_firmware
Oneview
oneview
Web Viewpoint
web_viewpoint

CVEs (183)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Hpe
1Oneview
Jun 17, 2026
Oct 25, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A remote code execution issue exists in HPE OneView.
1Hpe
2Integrated Lights Out 5 Firmware
Integrated Lights Out 6 Firmware
Jun 17, 2026
Oct 18, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
HPE Integrated Lights-Out 5, and Integrated Lights-Out 6 using iLOrest may cause denial of service.
1Hpe
3Msa 1060 Storage Firmware
Msa 2060 Storage FirmwareMsa 2062 Storage Firmware
Jun 17, 2026
Oct 9, 2023
N/A· v4
5.4 MEDIUM· v3
N/A· v2
HPE MSA Controller prior to version IN210R004 could be remotely exploited to allow inconsistent interpretation of HTTP requests. 
1Hpe
1Arubaos Switch
Jun 17, 2026
Aug 29, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
A memory corruption vulnerability in ArubaOS-Switch could lead to unauthenticated remote code execution by receiving specially crafted packets. Successful exploitation of this vulnerability results in the ability to exec...Show more
A memory corruption vulnerability in ArubaOS-Switch could lead to unauthenticated remote code execution by receiving specially crafted packets. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system.Show less
1Hpe
1Arubaos Switch
Jun 17, 2026
Aug 29, 2023
N/A· v4
6.5 MEDIUM· v3
N/A· v2
An authenticated remote code execution vulnerability exists in the command line interface in ArubaOS-Switch. Successful exploitation results in a Denial-of-Service (DoS) condition in the switch.
1Hpe
1Arubaos Switch
Jun 17, 2026
Aug 29, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
A vulnerability in the ArubaOS-Switch web management interface could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface provided certain configu...Show more
A vulnerability in the ArubaOS-Switch web management interface could allow an unauthenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface provided certain configuration options are present. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface. Show less
1Hpe
1Arubaos Cx
Jun 17, 2026
Aug 1, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
An authenticated command injection vulnerability exists in the AOS-CX command line interface. Successful exploitation of this vulnerability results in the ability to execute arbitrary commands on the underlying operatin...Show more
An authenticated command injection vulnerability exists in the AOS-CX command line interface. Successful exploitation of this vulnerability results in the ability to execute arbitrary commands on the underlying operating system as a privileged user on the affected switch. This allows an attacker to fully compromise the underlying operating system on the device running AOS-CX. Show less
1Hpe
1Intelligent Provisioning
Jun 17, 2026
Jul 18, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
The vulnerability could be locally exploited to allow escalation of privilege.
1Hpe
2Integrity Mc990 X Server Rmc Firmware
Sgi Uv 300 Rmc Firmware
Jun 17, 2026
Jun 16, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
The MC990 X and UV300 RMC component has and inadequate default configuration that could be exploited to obtain enhanced privilege.
1Hpe
1Insight Remote Support
Jun 17, 2026
Jun 16, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
A security vulnerability in HPE Insight Remote Support may result in the local disclosure of privileged LDAP information.
2Hp
Hpe
2Oneview
Oneview Global Dashboard
Jun 17, 2026
Apr 25, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
HPE OneView and HPE OneView Global Dashboard appliance dumps may expose authentication tokens
1Hpe
1Oneview Global Dashboard
Jun 17, 2026
Apr 14, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
An HPE OneView Global Dashboard (OVGD) appliance dump may expose OVGD user account credentials
1Hpe
1Arubaos Cx
Jun 17, 2026
Mar 22, 2023
N/A· v4
8.8 HIGH· v3
N/A· v2
An authenticated remote code execution vulnerability exists in the AOS-CX Network Analytics Engine. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileg...Show more
An authenticated remote code execution vulnerability exists in the AOS-CX Network Analytics Engine. Successful exploitation of this vulnerability results in the ability to execute arbitrary code as a privileged user on the underlying operating system, leading to a complete compromise of the switch running AOS-CX. Show less
1Hpe
2Flexfabric 5700 40xg 2qsfp+ Firmware
Flexfabric 5700 48g 4xg 2qsfp+ Firmware
Jun 17, 2026
Mar 22, 2023
N/A· v4
6.1 MEDIUM· v3
N/A· v2
Potential security vulnerabilities have been identified in the HPE FlexFabric 5700 Switch Series. These vulnerabilities could be remotely exploited to allow host header injection and URL redirection. HPE has made the fol...Show more
Potential security vulnerabilities have been identified in the HPE FlexFabric 5700 Switch Series. These vulnerabilities could be remotely exploited to allow host header injection and URL redirection. HPE has made the following software to resolve the vulnerability in HPE FlexFabric 5700 Switch Series version R2432P61 or later. Show less
1Hpe
2Superdome Flex 280 Server Firmware
Superdome Flex Server Firmware
Jun 17, 2026
Mar 10, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be locally exploited to allow disclosure of information. HPE has made the following sof...Show more
A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be locally exploited to allow disclosure of information. HPE has made the following software to resolve the vulnerability in HPE Superdome Flex Servers v3.65.8 and Superdome Flex 280 Servers v1.45.8. Show less
1Hpe
1Serviceguard For Linux
Jun 17, 2026
Mar 1, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Unauthenticated server side request forgery in HPE Serviceguard Manager
1Hpe
1Serviceguard For Linux
Jun 17, 2026
Mar 1, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Pre-auth memory corruption in HPE Serviceguard
1Hpe
1Serviceguard For Linux
Jun 17, 2026
Mar 1, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Unauthenticated Java deserialization vulnerability in Serviceguard Manager
2Hp
Hpe
10Officeconnect 1820 24g Poe+ (185w) Switch J9983a Firmware
Officeconnect 1820 48g Poe+ (370w) Switch J9984a FirmwareOfficeconnect 1820 8g Poe+ (65w) Switch J9982a Firmware+7 more
Jun 17, 2026
Jan 5, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerability could be remotely exploited to allow remote directory traversal in HPE OfficeConnect 1820 switch...Show more
A potential security vulnerability has been identified in HPE OfficeConnect 1820, and 1850 switch series. The vulnerability could be remotely exploited to allow remote directory traversal in HPE OfficeConnect 1820 switch series version PT.02.17 and below, HPE OfficeConnect 1850 switch series version PC.01.23 and below, and HPE OfficeConnect 1850 (10G aggregator) switch version PO.01.22 and below. Show less
1Hpe
2Superdome Flex 280 Firmware
Superdome Flex Firmware
Jun 17, 2026
Jan 5, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be exploited to allow local unauthorized data injection. HPE has made the following sof...Show more
A potential security vulnerability has been identified in HPE Superdome Flex and Superdome Flex 280 servers. The vulnerability could be exploited to allow local unauthorized data injection. HPE has made the following software updates to resolve the vulnerability in HPE Superdome Flex firmware 3.60.50 and below and Superdome Flex 280 servers firmware 1.40.60 and below. Show less